CVE-2024-42461

9.1CRITICAL

In the Elliptic package 6.5.6 for Node.js, ECDSA signature malleability occurs because BER-encoded signatures are allowed.

发布于: 8/2/2024更新于: 11/3/2025

描述

In the Elliptic package 6.5.6 for Node.js, ECDSA signature malleability occurs because BER-encoded signatures are allowed.

AI分析AI驱动

受影响产品

elliptic_projectelliptic
6.5.6

参考资料