phpseclib before 2.0.31 and 3.x before 3.0.7 mishandles RSA PKCS#1 v1.5 signature verification.
| Software | From | Fixed in |
|---|---|---|
| debian / debian_linux | 10.0 | 10.0.x |
phpseclib / phpseclib
|
3.0.0 | 3.0.7 |
phpseclib / phpseclib
|
- | 2.0.31 |
phpseclib / phpseclib
|
3.0 | 3.0.7 |