Skip to content

Need fix for CVE-2024-23342 which is related to ecdsa #342

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Closed
shripad-bhat opened this issue Jul 24, 2024 · 1 comment
Closed

Need fix for CVE-2024-23342 which is related to ecdsa #342

shripad-bhat opened this issue Jul 24, 2024 · 1 comment

Comments

@shripad-bhat
Copy link

The ecdsa PyPI package is a pure Python implementation of ECC (Elliptic Curve Cryptography) with support for ECDSA (Elliptic Curve Digital Signature Algorithm), EdDSA (Edwards-curve Digital Signature Algorithm) and ECDH (Elliptic Curve Diffie-Hellman). Versions 0.18.0 and prior are vulnerable to the Minerva attack. As of time of publication, no known patched version exists.

@tomato42
Copy link
Member

duplicate of #330

@tomato42 tomato42 closed this as not planned Won't fix, can't repro, duplicate, stale Jul 24, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants