PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature space or public key space and makes it easier for attackers to conduct brute force attacks to obtain the private key.
{
"nvd_published_at": "2012-06-17T03:41:00Z",
"cwe_ids": [],
"severity": "MODERATE",
"github_reviewed_at": "2024-04-30T14:35:18Z",
"github_reviewed": true
}