Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Dlitz

First CVE: Jun 17, 2012Active for: 14 yearsTotal CVEs: 4

Dlitz maintains PyCrypto, a Python cryptographic library with a concentrated but prominent footprint in legacy systems and educational contexts, where its narrow scope belies its broad downstream reach through application dependencies. The vulnerability profile centers on memory-safety and cryptographic-strength issues, including buffer-boundary violations and inadequate encryption implementations, which are characteristic weaknesses in native cryptographic code that has matured without systematic memory-safe redesign. Live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
4
Total CVEs
More Total CVEs than 79% of tracked vendors
1.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
6.5
Avg CVSS Score
Higher Avg CVSS Score than 40% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Dlitz over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 17, 2012
14 years ago
Most Recent CVE
Feb 3, 2018
3,093 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (4 CVEs).

4 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2013-7459CRITICAL
Heap-based buffer overflow in the ALGnew function in block_templace.c in Python Cryptography Toolkit (aka pycrypto) allows remote attackers to execute arbitrary code as demonstrate
Feb 15, 20179.835NONO
CVE-2018-6594HIGH
lib/Crypto/PublicKey/ElGamal.py in PyCrypto through 2.6.1 generates weak ElGamal key parameters, which allows attackers to obtain sensitive information by reading ciphertext data (
Feb 3, 20187.525NONO
CVE-2013-1445MEDIUM
The Crypto.Random.atfork function in PyCrypto before 2.6.1 does not properly reseed the pseudo-random number generator (PRNG) before allowing a child process to access it, which ma
Oct 26, 20134.318NONO
CVE-2012-2417MEDIUM
PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature space or public key space and makes it ea
Jun 17, 20124.318NONO
View all 4 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products4 CVEs
50%
25%
25%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network2 (50.0%)
Unknown2 (50.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (50.0%)
High0 (0.0%)
Unknown2 (50.0%)
User Interaction
None2 (50.0%)
Unknown2 (50.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None2 (50.0%)
Unknown2 (50.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (4 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Dlitz.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Dlitz — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Dlitz's Products

View all 2 CNAs →

Top CWEs