Количество 2
Количество 2
CVE-2021-43570
около 4 лет назад
The verify function in the Stark Bank Java ECDSA library (ecdsa-java) 1.0.0 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages.
CVSS3: 9.8
EPSS: Низкий
GHSA-r28h-x6hv-2fq3
около 4 лет назад
Improper Verification of Cryptographic Signature in starkbank-ecdsa
CVSS3: 9.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-43570 The verify function in the Stark Bank Java ECDSA library (ecdsa-java) 1.0.0 fails to check that the signature is non-zero, which allows attackers to forge signatures on arbitrary messages. | CVSS3: 9.8 | 0% Низкий | около 4 лет назад | |
GHSA-r28h-x6hv-2fq3 Improper Verification of Cryptographic Signature in starkbank-ecdsa | CVSS3: 9.8 | 0% Низкий | около 4 лет назад |
Уязвимостей на страницу
20