Описание
An issue in Open Quantum Safe liboqs v.10.0 allows a remote attacker to escalate privileges via the crypto_sign_signature parameter in the /pqcrystals-dilithium-standard_ml-dsa-44-ipd_avx2/sign.c component.
Ссылки
- Third Party Advisory
- ExploitMitigation
- Product
- Third Party Advisory
- ExploitMitigation
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:openquantumsafe:liboqs:0.10.0:-:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.01365
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-327
Связанные уязвимости
CVSS3: 9.8
ubuntu
больше 1 года назад
An issue in Open Quantum Safe liboqs v.10.0 allows a remote attacker to escalate privileges via the crypto_sign_signature parameter in the /pqcrystals-dilithium-standard_ml-dsa-44-ipd_avx2/sign.c component.
CVSS3: 9
redhat
больше 1 года назад
An issue in Open Quantum Safe liboqs v.10.0 allows a remote attacker to escalate privileges via the crypto_sign_signature parameter in the /pqcrystals-dilithium-standard_ml-dsa-44-ipd_avx2/sign.c component.
CVSS3: 9.8
debian
больше 1 года назад
An issue in Open Quantum Safe liboqs v.10.0 allows a remote attacker t ...
EPSS
Процентиль: 80%
0.01365
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-327