Consensys gnark-crypto through 0.11.2 allows Signature Malleability. This occurs because deserialisation of EdDSA and ECDSA signatures does not ensure that the data is in a certain interval.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-09-28T00:00:00

Updated: 2023-09-28T03:40:49.574895

Reserved: 2023-09-28T00:00:00


Link: CVE-2023-44273

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-09-28T04:15:12.493

Modified: 2023-10-02T21:06:10.147


Link: CVE-2023-44273

JSON object: View

cve-icon Redhat Information

No data.

CWE