Ribose
Ribose RNP: vulnerabilities and CVEs
Ribose RNP has 4 published vulnerabilities, 1 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs4
Last 12 months1
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-13470 | High (7.7) | 0.30% | — | Nov 21, 2025 | In RNP version 0.18.0 a refactoring regression causes the symmetric session key used for Public-Key Encrypted Session Key (PKESK) packets to be left uninitialized except for zeroing, resulting in it always being an… |
| CVE-2023-29480 | High (7.5) | 0.41% | — | Apr 24, 2023 | Ribose RNP before 0.16.3 sometimes lets secret keys remain unlocked after use. |
| CVE-2023-29479 | Medium (5.3) | 0.90% | — | Apr 24, 2023 | Ribose RNP before 0.16.3 may hang when the input is malformed. |
| CVE-2021-33589 | High (7.5) | 0.49% | — | Apr 21, 2023 | Ribose RNP before 0.15.1 does not implement a required step in a cryptographic algorithm, resulting in weaker encryption than on the tin of the algorithm. |