Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-8556

Опубликовано: 06 авг. 2025
Источник: nvd
CVSS3: 3.7
EPSS Низкий

Описание

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

EPSS

Процентиль: 2%
0.00014
Низкий

3.7 Low

CVSS3

Дефекты

CWE-347

Связанные уязвимости

CVSS3: 3.7
ubuntu
5 месяцев назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

CVSS3: 3.7
redhat
7 месяцев назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve. This vulnerability allows an attacker to compromise session security via low-order point injection and incorrect point validation during Diffie-Hellman key exchange.

CVSS3: 3.7
debian
5 месяцев назад

A flaw was found in CIRCL's implementation of the FourQ elliptic curve ...

CVSS3: 3.7
github
7 месяцев назад

CIRCL-Fourq: Missing and wrong validation can lead to incorrect results

CVSS3: 6.5
redos
4 месяца назад

Множественные уязвимости portainer-ce

EPSS

Процентиль: 2%
0.00014
Низкий

3.7 Low

CVSS3

Дефекты

CWE-347