It was discovered that openCryptoki incorrectly handled certain EC keys. An attacker could possibly use this issue to cause a invalid curve attack.
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2021-0492.json"