GHSA-hh26-4ppw-5864
MEDIUMThe opensslprivatedecrypt function in PHP, when using PKCS1 padding (OPENSSLPKCS1PADDING, which is the default), is vulnerable to the Marvin Attack unless it is used with an OpenSSL version that includes the changes from this pull request: https://github.com/openssl/openssl/pull/13817 (rsapkcs1implicitrejection). These changes are part of OpenSSL 3.2 and have also been backported to stable versi
- Affected
- >=0, <8.1.29, >=8.2.0, <8.2.20, >=8.3.0, <8.3.8
- Fixed in
- not stated
- Published
- 2024-06-12
- Source
- osv