Product:

Crypto\+\+

(Cryptopp)
Repositories https://github.com/weidai11/cryptopp
#Vulnerabilities 12
Date Id Summary Products Score Patch Annotated
2017-01-30 CVE-2016-7544 Crypto++ 5.6.4 incorrectly uses Microsoft's stack-based _malloca and _freea functions. The library will request a block of memory to align a table in memory. If the table is later reallocated, then the wrong pointer could be freed. Crypto\+\+ 7.5
2017-02-13 CVE-2016-3995 The timing attack protection in Rijndael::Enc::ProcessAndXorBlock and Rijndael::Dec::ProcessAndXorBlock in Crypto++ (aka cryptopp) before 5.6.4 may be optimized out by the compiler, which allows attackers to conduct timing attacks. Crypto\+\+ 7.5