Debian 9898 Published by

A python-crypto update has been released for Debian 7 LTS



Package : python-crypto
Version : 2.6-4+deb7u5
CVE ID : CVE-2013-7459
Debian Bug : #849495, #850025, #850077

It was discovered that there was a regression in the recent update to
python-crypto, a cryptographic algorithms and protocols for Python.

We now raise a warning (not an error) on invalid input to avoid regressions in
python-paramiko, duplicity. etc. introduced in in 2.6-4+deb7u4. Thanks to
Salvatore Bonaccorso and Sebastian Ramacher.

For Debian 7 "Wheezy", this issue has been fixed in python-crypto version
2.6-4+deb7u5.

We recommend that you upgrade your python-crypto packages.