« Back to list

Ribose

Ribose RNP: vulnerabilities and CVEs

Ribose RNP has 4 published vulnerabilities, 1 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs4
Last 12 months1
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2025-13470High (7.7)0.30%—Nov 21, 2025
In RNP version 0.18.0 a refactoring regression causes the symmetric session key used for Public-Key Encrypted Session Key (PKESK) packets to be left uninitialized except for zeroing, resulting in it always being an…
CVE-2023-29480High (7.5)0.41%—Apr 24, 2023
Ribose RNP before 0.16.3 sometimes lets secret keys remain unlocked after use.
CVE-2023-29479Medium (5.3)0.90%—Apr 24, 2023
Ribose RNP before 0.16.3 may hang when the input is malformed.
CVE-2021-33589High (7.5)0.49%—Apr 21, 2023
Ribose RNP before 0.15.1 does not implement a required step in a cryptographic algorithm, resulting in weaker encryption than on the tin of the algorithm.