logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-23342

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-23342

Description:
The `ecdsa` PyPI package is a pure Python implementation of ECC (Elliptic Curve Cryptography) with support for ECDSA (Elliptic Curve Digital Signature Algorithm), EdDSA (Edwards-curve Digital Signature Algorithm) and ECDH (Elliptic Curve Diffie-Hellman). Versions 0.18.0 and prior are vulnerable to the Minerva attack. As of time of publication, no known patched version exists.
Last updated date:
02/06/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
02/06/2024
Reference url to background

https://github.com/tlsfuzzer/python-ecdsa/security/advisories/GHSA-wj6h-64fc-37mp

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2026

Privacy Policy