Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30010
HistoryApr 17, 2021 - 12:58 a.m.

Incorrect Signature Verification

2021-04-1700:58:26
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17
nettle
signature verification
flaws
gost dsa
eddsa
ecdsa
attacker
invalid signature
assertion failure
validation

EPSS

0.01

Percentile

83.4%

nettle uses incorrect signature verification. Some flaws in Several Nettle signature verification functions (GOST DSA, EDDSA & ECDSA) allows an attacker to force an invalid signature, causing an assertion failure or possible validation.