CVE-2025-9513

A flaw has been found in editso fuso up to 1.0.4-beta.7. This affects the function PenetrateRsaAndAesHandshake of the file src/net/penetrate/handshake/mod.rs. This manipulation of the argument priv_key causes inadequate encryption strength. Remote exploitation of the attack is possible. A high degree of complexity is needed for the attack. The exploitability is reported as difficult.
Configurations

No configuration.

History

29 Aug 2025, 16:24

Type Values Removed Values Added
Summary
  • (es) Se ha detectado una falla en editso fuso hasta la versión 1.0.4-beta.7. Esta afecta a la función PenetrateRsaAndAesHandshake del archivo src/net/penetrate/handshake/mod.rs. Esta manipulación del argumento priv_key provoca una seguridad de cifrado insuficiente. El ataque puede ejecutarse en remoto. Es un ataque de complejidad bastante alta. Parece difícil de explotar.

27 Aug 2025, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-27 06:15

Updated : 2025-08-29 16:24


NVD link : CVE-2025-9513

Mitre link : CVE-2025-9513

CVE.ORG link : CVE-2025-9513


JSON object : View

Products Affected

No product.

CWE
CWE-310

Cryptographic Issues

CWE-326

Inadequate Encryption Strength