Описание
An error-handling flaw was found in python-ecdsa before version 0.13.3. During signature decoding, malformed DER signatures could raise unexpected exceptions (or no exceptions at all), which could lead to a denial of service.
Ссылки
- Issue TrackingThird Party Advisory
- Release Notes
- Issue TrackingThird Party Advisory
- Release Notes
Уязвимые конфигурации
EPSS
3.7 Low
CVSS3
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
Связанные уязвимости
An error-handling flaw was found in python-ecdsa before version 0.13.3. During signature decoding, malformed DER signatures could raise unexpected exceptions (or no exceptions at all), which could lead to a denial of service.
An error-handling flaw was found in python-ecdsa before version 0.13.3. During signature decoding, malformed DER signatures could raise unexpected exceptions (or no exceptions at all), which could lead to a denial of service.
An error-handling flaw was found in python-ecdsa before version 0.13.3 ...
ecdsa Denial of Service vulnerability in signature verification and signature malleability
Уязвимость криптографической библиотеки Python ECDSA, связанная с недостаточной обработкой исключительных состояний, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
3.7 Low
CVSS3
7.5 High
CVSS3
5 Medium
CVSS2