Index — Security
Security advisories
Security advisories for RNP.
RA-2025-11-20 CVE-2025-13470 2025-11-21
RA-2025-11-20: Security vulnerability fixed in RNP 0.18.1
Use of insufficiently random values in session key generation for PKESK. RNP version 0.18.0 ONLY is affected. Upgrading to RNP 0.18.1 fixes this issue.
RA-2023-04-11 CVE-2023-29479, CVE-2023-29480 2023-04-11
RA-2023-04-11: Security vulnerabilities fixed in RNP 0.16.3
This advisory notice covers the following: CVE-2023-29479 and CVE-2023-29480.
RI-2021-01 CVE-2021-33589 2021-05-30
RI-2021-01: Key encryption settings not copied after unprotect action
A key decrypted through `rnp_key_unprotect` will remain unprotected after after a subsequent call of `rnp_key_protect`.
Found a vulnerability? Please report it via our security reporting channel.