📦 Botan

by Botan Project

🔍 What is Botan?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-24115

CRITICAL CVSS 9.8 Feb 22, 2021

This vulnerability in Botan cryptographic library allows attackers to perform timing attacks against base32, base58, base64, and hex encoding/decoding operations. The lack of constant-time computation...

CVE-2017-7252

HIGH CVSS 7.5 Nov 3, 2023

This vulnerability in Botan's bcrypt implementation incorrectly handles passwords between 57-72 characters, allowing attackers to more easily crack hashed passwords. It affects any system using Botan ...

CVE-2024-50382

MEDIUM CVSS 5.9 Oct 23, 2024

This vulnerability in Botan's AES-GCM implementation allows side-channel attacks through compiler-induced secret-dependent control flow. Attackers could potentially extract cryptographic keys by analy...