Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-8556

Опубликовано: 06 авг. 2025
Источник: nvd
CVSS3: 3.7
EPSS Низкий

Описание

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

EPSS

Процентиль: 4%
0.00022
Низкий

3.7 Low

CVSS3

Дефекты

CWE-347

Связанные уязвимости

CVSS3: 3.7
ubuntu
19 дней назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

CVSS3: 3.7
redhat
3 месяца назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

CVSS3: 3.7
debian
19 дней назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve ...

CVSS3: 3.7
github
3 месяца назад

CIRCL-Fourq: Missing and wrong validation can lead to incorrect results

EPSS

Процентиль: 4%
0.00022
Низкий

3.7 Low

CVSS3

Дефекты

CWE-347