Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-9f5j-8jwj-x28g
  • PyPI/ecdsa
python-ecdsa: Denial of Service via improper DER length validation in crafted private keys 27 Mar
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-wj6h-64fc-37mp
  • PyPI/ecdsa
Minerva timing attack on P-256 in python-ecdsa 22 Jan 2024
  • No fix available
  • Severity - 7.4 (High)
GHSA-92vm-mxjf-jqf3
  • PyPI/starkbank-ecdsa
Improper Verification of Cryptographic Signature in starkbank-ecdsa 10 Nov 2021
  • Fix available
  • Severity - 9.8 (Critical)
PYSEC-2021-426
  • PyPI/starkbank-ecdsa
See record for full details 09 Nov 2021
  • Fix available
GHSA-9wx7-jrvc-28mm
  • Maven/com.starkbank:ecdsa-java
  • NuGet/starkbank-ecdsa
  • PyPI/starkbank-ecdsa
  • npm/starkbank-ecdsa
Signature verification vulnerability in Stark Bank ecdsa libraries 08 Nov 2021
  • Fix available
GHSA-8qxj-f9rh-9fg2
  • PyPI/ecdsa
Improper Verification of Cryptographic Signature in Pure-Python ECDSA 01 Apr 2020
  • Fix available
  • Severity - 9.3 (Critical)
PYSEC-2020-163
  • PyPI/ecdsa
See record for full details 02 Jan 2020
  • Fix available
PYSEC-2019-177
  • PyPI/ecdsa
See record for full details 26 Nov 2019
  • Fix available
GHSA-pwfw-mgfj-7g3g
  • PyPI/ecdsa
ecdsa Denial of Service vulnerability in signature verification and signature malleability 08 Oct 2019
  • Fix available
  • Severity - 8.7 (High)