Security Advisory

CVE-2021-38195

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-08-08 05:07:36
Last updated 2024-08-04 01:37:16
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in the libsecp256k1 crate before 0.5.0 for Rust. It can verify an invalid signature because it allows the R or S parameter to be larger than the curve order, aka an overflow.