CVE-2023-44273
28.09.2023, 04:15
Consensys gnark-crypto through 0.11.2 allows Signature Malleability. This occurs because deserialisation of EdDSA and ECDSA signatures does not ensure that the data is in a certain interval.Enginsight
Vendor | Product | Version |
---|---|---|
consensys | gnark-crypto | 𝑥 < 0.12.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration