5.3
CVSSv3

CVE-2024-23680

Published: 19/01/2024 Updated: 26/01/2024
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatures.

Vulnerable Product Search on Vulmon Subscribe to Product

amazon aws encryption sdk