USN-3616-1: Python Crypto vulnerability
USN-3616-1: Python Crypto vulnerability python-crypto vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 17.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Summary Python Crypto could expose sensitive information. Software Description python-crypto – cryptographic algorithms and protocols for Python Details It was discovered that Python Crypto incorrectly generated ElGamal key parameters. A remote attacker could possibly use this issue to obtain sensitive information. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 17.10 python-crypto – 2.6.1-7ubuntu0.1 python3-crypto – 2.6.1-7ubuntu0.1 Ubuntu 16.04 LTS python-crypto – 2.6.1-6ubuntu0.16.04.3 python3-crypto – 2.6.1-6ubuntu0.16.04.3 Ubuntu 14.04 LTS python-crypto – 2.6.1-4ubuntu0.3 python3-crypto – 2.6.1-4ubuntu0.3 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2018-6594 Source: USN-3616-1: Python Crypto vulnerability