Sodium is a modern, easy-to-use software library for encryption, decryption, signatures, password hashing and more. It is a portable, cross-compilable, installable6, packageable fork of NaCl, with a compatible API, and an extended API to improve usability even further.
Security Fix(es):
libsodium before ad3004e, in atypical use cases involving certain custom cryptography or untrusted data to cryptocoreed25519isvalid_point, mishandles checks for whether an elliptic curve point is valid because it sometimes allows points that aren't in the main cryptographic group.(CVE-2025-69277)
{
"severity": "Medium"
}{
"x86_64": [
"libsodium-1.0.18-2.oe2203sp3.x86_64.rpm",
"libsodium-debuginfo-1.0.18-2.oe2203sp3.x86_64.rpm",
"libsodium-debugsource-1.0.18-2.oe2203sp3.x86_64.rpm",
"libsodium-devel-1.0.18-2.oe2203sp3.x86_64.rpm"
],
"src": [
"libsodium-1.0.18-2.oe2203sp3.src.rpm"
],
"aarch64": [
"libsodium-1.0.18-2.oe2203sp3.aarch64.rpm",
"libsodium-debuginfo-1.0.18-2.oe2203sp3.aarch64.rpm",
"libsodium-debugsource-1.0.18-2.oe2203sp3.aarch64.rpm",
"libsodium-devel-1.0.18-2.oe2203sp3.aarch64.rpm"
]
}