Skip to main content

Vendor/product archive

antonkueltz / fastecdsa CVEs

Beta · best-effort

2 CVEs tagged to antonkueltz / fastecdsa0 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2024-21502

Published Feb 24, 2024

Versions of the package fastecdsa before 2.3.2 are vulnerable to Use of Uninitialized Variable on the stack, via the curvemath_mul function in src/curveMath.c, due to being used a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2020-12607

Published Jun 2, 2020

An issue was discovered in fastecdsa before 2.1.2. When using the NIST P-256 curve in the ECDSA implementation, the point at infinity is mishandled. This means that for an extreme…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1