9.8
CVSSv3

CVE-2023-44273

Published: 28/09/2023 Updated: 02/10/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Consensys gnark-crypto up to and including 0.11.2 allows Signature Malleability. This occurs because deserialisation of EdDSA and ECDSA signatures does not ensure that the data is in a certain interval.

Vulnerable Product Search on Vulmon Subscribe to Product

consensys gnark-crypto