github.com/bnb-chain/tss-lib
Activity
- Latest release
- 3y ago
- Total releases
- 10
- Cadence
- ~2 months
- Last 12 months
- 0
Reach
- Stars
- —
Details
- First release
- Nov 01, 2019
| Version | Released | |
|---|---|---|
v1.5.0
minor
1 CVE
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev |
v1.5.0
minor
Dependencies (11)
+ 3 more |
|
v1.3.5
patch
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.3.5
patch
Dependencies (11)
+ 3 more |
|
v1.3.3
patch
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.3.3
patch
Dependencies (10)
+ 2 more |
|
v1.3.2
patch
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.3.2
patch
Dependencies (9)
+ 1 more |
|
v1.3.1
patch
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.3.1
patch
Dependencies (9)
+ 1 more |
|
v1.3.0
minor
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.3.0
minor
Dependencies (9)
+ 1 more |
|
v1.2.0
minor
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.2.0
minor
Dependencies (7)
|
|
v1.1.1
patch
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.1.1
patch
Dependencies (7)
|
|
v1.1.0
minor
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.1.0
minor
Dependencies (7)
|
|
v1.0.0
initial
5 CVEs
GHSA-h24c-6p6p-m3vx
Sep 01, 2023
tss-lib leaks secret keys in response to incorrectly constructed Paillier moduli
Critical
ImpactThe specification of the GG18 threshold ECDSA signature protocol contains a vulnerability allowing an attacker to recover the shared secret key. If a participant generates a Paillier modulus PatchesThe implementation of GG18 in tss-lib did not prove that
These proofs apply to both the Paillier encryption modulus To address the issue in the resharing protocol, an additional round has been added to the end so that participants can confirm that they received valid proofs. ReferencesReferences Updated Sep 01, 2023 · Source: OSV.dev
CVE-2023-26557
GO-2023-1733
GHSA-mjqv-xhgm-gx8c
Jul 11, 2023
Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev
CVE-2022-47931
GO-2023-1904
GHSA-cvcx-g7wh-x8rf
Jul 11, 2023
Collision of hash values in github.com/bnb-chain/tss-lib Collision of hash values in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
References Updated May 22, 2024 · Source: OSV.dev
CVE-2022-47930
GO-2023-1867
GHSA-c58h-qv6g-fw74
Jul 11, 2023
Replay attacks involving proofs in github.com/bnb-chain/tss-lib Replay attacks involving proofs in github.com/bnb-chain/tss-lib. Updated Feb 06, 2025 · Source: OSV.dev
CVE-2023-26556
GO-2023-1732
GHSA-3w84-4mjc-rjw7
Jul 11, 2023
Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib Timing attack from non-constant time scalar multiplication in github.com/bnb-chain/tss-lib. Fixed in
1.3.6-0.20230324145555-bb6fb30bd3eb
Updated Feb 05, 2025 · Source: OSV.dev |
v1.0.0
initial
Dependencies (7)
|