python-cryptography 3.2 is vulnerable to Bleichenbacher timing attacks in the RSA decryption API, via timed processing of valid PKCS#1 v1.5 ciphertext.
{ "versions": [ { "introduced": "0" }, { "last_affected": "3.2" } ] }
[ { "events": [ { "introduced": "0" }, { "last_affected": "1.10.0" } ] } ]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-25659.json"