CVE-2012-4571
Publication date 6 November 2012
Last updated 24 July 2024
Ubuntu priority
Python Keyring 0.9.1 does not securely initialize the cipher when encrypting passwords for CryptedFileKeyring files, which makes it easier for local users to obtain passwords via a brute-force attack.
References
Related Ubuntu Security Notices (USN)
- USN-1634-1
- Python Keyring vulnerabilities
- 20 November 2012