CVE-2024-23680
19.01.2024, 21:15
AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatures.Enginsight
Vendor | Product | Version |
---|---|---|
amazon | aws_encryption_sdk | 𝑥 < 1.9.0 |
amazon | aws_encryption_sdk | 2.0.0 ≤ 𝑥 < 2.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References