CVE-2014-1921: Parcimonie Project Parcimonie
High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.
parcimonie before 0.8.1, when using a large keyring, sleeps for the same amount of time between fetches, which allows attackers to correlate key fetches via unspecified vectors.
Affected products
- Parcimonie Project Parcimonie: up to and including 0.7.1-1; version 0.6-1 only; version 0.6-3 only; version 0.7-1 only
Published 2014-02-14. Last modified 2026-06-17.