Title: Ncrack Parser is using a depracated encryption padding mechanism removed in the newest node security patch · Issue #2310 · secureCodeBox/secureCodeBox · GitHub
Open Graph Title: Ncrack Parser is using a depracated encryption padding mechanism removed in the newest node security patch · Issue #2310 · secureCodeBox/secureCodeBox
X Title: Ncrack Parser is using a depracated encryption padding mechanism removed in the newest node security patch · Issue #2310 · secureCodeBox/secureCodeBox
Description: 🐞 Bug report Describe the bug https://nodejs.org/en/blog/vulnerability/february-2024-security-releases#nodejs-is-vulnerable-to-the-marvin-attack-timing-variant-of-the-bleichenbacher-attack-against-pkcs1-v15-padding-cve-2023-46809---mediu...
Open Graph Description: 🐞 Bug report Describe the bug https://nodejs.org/en/blog/vulnerability/february-2024-security-releases#nodejs-is-vulnerable-to-the-marvin-attack-timing-variant-of-the-bleichenbacher-attack-against-...
X Description: 🐞 Bug report Describe the bug https://nodejs.org/en/blog/vulnerability/february-2024-security-releases#nodejs-is-vulnerable-to-the-marvin-attack-timing-variant-of-the-bleichenbacher-attack-against-...
Opengraph URL: https://github.com/secureCodeBox/secureCodeBox/issues/2310
X: @github
Domain: github.com
{"@context":"https://schema.org","@type":"DiscussionForumPosting","headline":"Ncrack Parser is using a depracated encryption padding mechanism removed in the newest node security patch","articleBody":"## 🐞 Bug report\r\n\r\n### Describe the bug\r\n\r\nhttps://nodejs.org/en/blog/vulnerability/february-2024-security-releases#nodejs-is-vulnerable-to-the-marvin-attack-timing-variant-of-the-bleichenbacher-attack-against-pkcs1-v15-padding-cve-2023-46809---medium\r\n\r\n### Expected behavior\r\n\r\nEncryption should still work on newer versions of node\r\n\r\n### System\r\n\r\n-\r\n\r\n### Screenshots / Logs\r\n\r\n```\r\nTypeError: RSA_PKCS1_PADDING is no longer supported for private decryption, this can be reverted with --security-revert=CVE-2023-46809\r\n```\r\n\r\n### Additional context\r\n\r\nIdeally this encryption should be switched to something more modern like age. \r\nWill open up another ticket for that.","author":{"url":"https://github.com/J12934","@type":"Person","name":"J12934"},"datePublished":"2024-02-23T09:06:07.000Z","interactionStatistic":{"@type":"InteractionCounter","interactionType":"https://schema.org/CommentAction","userInteractionCount":0},"url":"https://github.com/2310/secureCodeBox/issues/2310"}
| route-pattern | /_view_fragments/issues/show/:user_id/:repository/:id/issue_layout(.:format) |
| route-controller | voltron_issues_fragments |
| route-action | issue_layout |
| fetch-nonce | v2:b9559ee0-7770-d779-4287-da96ceceb7ad |
| current-catalog-service-hash | 81bb79d38c15960b92d99bca9288a9108c7a47b18f2423d0f6438c5b7bcd2114 |
| request-id | A2AE:AC577:5EFAA9:7C59F6:698EBC62 |
| html-safe-nonce | 0513c4b27ea24180ecc8b345bd25248179771845895eb347b4f0761913f22e68 |
| visitor-payload | eyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJBMkFFOkFDNTc3OjVFRkFBOTo3QzU5RjY6Njk4RUJDNjIiLCJ2aXNpdG9yX2lkIjoiMTc2NDAyNDU4MDEyNzUwNTUwNiIsInJlZ2lvbl9lZGdlIjoiaWFkIiwicmVnaW9uX3JlbmRlciI6ImlhZCJ9 |
| visitor-hmac | 75826037a1fd2c928707603e95ad9efaccc8a75acef26a6e9c2d4dc3f2346c3c |
| hovercard-subject-tag | issue:2150664785 |
| github-keyboard-shortcuts | repository,issues,copilot |
| google-site-verification | Apib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I |
| octolytics-url | https://collector.github.com/github/collect |
| analytics-location | / |
| fb:app_id | 1401488693436528 |
| apple-itunes-app | app-id=1477376905, app-argument=https://github.com/_view_fragments/issues/show/secureCodeBox/secureCodeBox/2310/issue_layout |
| twitter:image | https://opengraph.githubassets.com/374b0d25b25698ed8fd9d3f9fddc3dd36a746c19eab80ce6d30e68e88b6bc126/secureCodeBox/secureCodeBox/issues/2310 |
| twitter:card | summary_large_image |
| og:image | https://opengraph.githubassets.com/374b0d25b25698ed8fd9d3f9fddc3dd36a746c19eab80ce6d30e68e88b6bc126/secureCodeBox/secureCodeBox/issues/2310 |
| og:image:alt | 🐞 Bug report Describe the bug https://nodejs.org/en/blog/vulnerability/february-2024-security-releases#nodejs-is-vulnerable-to-the-marvin-attack-timing-variant-of-the-bleichenbacher-attack-against-... |
| og:image:width | 1200 |
| og:image:height | 600 |
| og:site_name | GitHub |
| og:type | object |
| og:author:username | J12934 |
| hostname | github.com |
| expected-hostname | github.com |
| None | cb2828a801ee6b7be618f3ac76fbf55def35bbc30f053a9c41bf90210b8b72ba |
| turbo-cache-control | no-preview |
| go-import | github.com/secureCodeBox/secureCodeBox git https://github.com/secureCodeBox/secureCodeBox.git |
| octolytics-dimension-user_id | 34573705 |
| octolytics-dimension-user_login | secureCodeBox |
| octolytics-dimension-repository_id | 80711933 |
| octolytics-dimension-repository_nwo | secureCodeBox/secureCodeBox |
| octolytics-dimension-repository_public | true |
| octolytics-dimension-repository_is_fork | false |
| octolytics-dimension-repository_network_root_id | 80711933 |
| octolytics-dimension-repository_network_root_nwo | secureCodeBox/secureCodeBox |
| turbo-body-classes | logged-out env-production page-responsive |
| disable-turbo | false |
| browser-stats-url | https://api.github.com/_private/browser/stats |
| browser-errors-url | https://api.github.com/_private/browser/errors |
| release | e6b91a7e6e46287d26887e3fb7a4161657bab8f7 |
| ui-target | full |
| theme-color | #1e2327 |
| color-scheme | light dark |
Links:
Viewport: width=device-width