Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-8556

Опубликовано: 06 авг. 2025
Источник: nvd
CVSS3: 3.7
EPSS Низкий

Описание

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

EPSS

Процентиль: 7%
0.00027
Низкий

3.7 Low

CVSS3

Дефекты

CWE-1287

Связанные уязвимости

CVSS3: 3.7
ubuntu
8 месяцев назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

CVSS3: 3.7
redhat
10 месяцев назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

CVSS3: 3.7
debian
8 месяцев назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve ...

CVSS3: 3.7
github
10 месяцев назад

CIRCL-Fourq: Missing and wrong validation can lead to incorrect results

CVSS3: 6.5
redos
7 месяцев назад

Множественные уязвимости portainer-ce

EPSS

Процентиль: 7%
0.00027
Низкий

3.7 Low

CVSS3

Дефекты

CWE-1287