Lucene search

K
osvGoogleOSV:PYSEC-2021-426
HistoryNov 09, 2021 - 10:15 p.m.

PYSEC-2021-426

2021-11-0922:15:00
Google
osv.dev
7

0.003 Low

EPSS

Percentile

71.2%

The verify function in the Stark Bank Python ECDSA library (ecdsa-python) 2.0.0 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages.

0.003 Low

EPSS

Percentile

71.2%