A flaw was found in openCryptoki. The openCryptoki Soft token does not check if an EC key is valid when an EC key is created via C_CreateObject, nor when C_DeriveKey is used with ECDH public data. This may allow a malicious user to extract the private key by performing an invalid curve attack.
{
"cpe": "cpe:2.3:a:opencryptoki_project:opencryptoki:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "3.17.0"
}
],
"source": [
"CPE_RANGE",
"REFERENCES"
]
}
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-3798.json"
[
{
"deprecated": false,
"digest": {
"function_hash": "227030742641434579281486111687377295738",
"length": 744
},
"id": "CVE-2021-3798-a513978c",
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/opencryptoki/opencryptoki/commit/4e3b43c3d8844402c04a66b55c6c940f965109f0",
"target": {
"file": "usr/lib/soft_stdll/soft_specific.c",
"function": "fill_ec_key_from_privkey"
}
},
{
"deprecated": false,
"digest": {
"function_hash": "167809855859216864502066761829954412651",
"length": 572
},
"id": "CVE-2021-3798-bd9a54be",
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/opencryptoki/opencryptoki/commit/4e3b43c3d8844402c04a66b55c6c940f965109f0",
"target": {
"file": "usr/lib/soft_stdll/soft_specific.c",
"function": "fill_ec_key_from_pubkey"
}
},
{
"deprecated": false,
"digest": {
"line_hashes": [
"241914080668320224096387584555820029697",
"294749349881809309464343043695379726799",
"155825835143266065778361583573477398571",
"241914080668320224096387584555820029697",
"151463854885936926283904390379390757917",
"273130886101318911504810936600417370356"
],
"threshold": 0.9
},
"id": "CVE-2021-3798-e4f487ff",
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/opencryptoki/opencryptoki/commit/4e3b43c3d8844402c04a66b55c6c940f965109f0",
"target": {
"file": "usr/lib/soft_stdll/soft_specific.c"
}
}
]
"2026-07-08T23:59:09Z"