Lucene search

K

Libsecp256k1 Security Vulnerabilities

cve
cve

CVE-2021-38195

An issue was discovered in the libsecp256k1 crate before 0.5.0 for Rust. It can verify an invalid signature because it allows the R or S parameter to be larger than the curve order, aka an...

9.8CVSS

9.3AI Score

0.003EPSS

2021-08-08 06:15 AM
83
5
cve
cve

CVE-2019-25003

An issue was discovered in the libsecp256k1 crate before 0.3.1 for Rust. Scalar::check_overflow allows a timing side-channel attack; consequently, attackers can obtain sensitive...

7.5CVSS

7.3AI Score

0.002EPSS

2020-12-31 10:15 AM
33
cve
cve

CVE-2019-20399

A timing vulnerability in the Scalar::check_overflow function in Parity libsecp256k1-rs before 0.3.1 potentially allows an attacker to leak information via a side-channel...

5.9CVSS

5.2AI Score

0.002EPSS

2020-01-23 12:15 AM
65