The fact
The first flaw affects the set_tlsext_serv function, while the second involves set_cookie_generate_callback() and memory management.
These vulnerabilities expose servers using pyOpenSSL to risks of authentication bypass and application crashes.
Click the link to read an article on the topic: