CVE-2024-42461

9.1CRITICAL

In the Elliptic package 6.5.6 for Node.js, ECDSA signature malleability occurs because BER-encoded signatures are allowed.

Veröffentlicht: 8/2/2024Aktualisiert: 11/3/2025

Beschreibung

In the Elliptic package 6.5.6 for Node.js, ECDSA signature malleability occurs because BER-encoded signatures are allowed.

KI-AnalyseKI-gestützt

Betroffene Produkte

elliptic_projectelliptic
6.5.6

Referenzen