The P224() Curve implementation can in rare circumstances generate incorrect outputs, including returning invalid points from ScalarMult.
{ "review_status": "REVIEWED", "url": "https://pkg.go.dev/vuln/GO-2021-0235" }
{ "imports": [ { "path": "crypto/elliptic", "symbols": [ "p224Contract" ] } ] }