mdanter/ecc
PHP Elliptic Curve Cryptography library
Activity
- Latest release
- 5y ago
- Total releases
- 13
- Cadence
- ~2 months
- Last 12 months
- 0
Reach
- Stars
- —
Details
- License
- MIT
- First release
- Jul 07, 2014
| Version | Released | |
|---|---|---|
v1.0.0
major
deprecated
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.4.7
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.5.2
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.4.6
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.5.1
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.4.5
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.5.0
minor
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.4.4
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.4.3
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.4.2
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.4.1
patch
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.4.0
minor
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev | ||
v0.3.2
initial
2 CVEs
CVE-2024-33851
GHSA-3494-cfwf-56hw
Apr 28, 2024
mdanter/ecc affected by timing vulnerability in cryptographic side-channels
Medium
Network
Low
Low
None
phpecc, as used in all versions of mdanter/ecc, as well as paragonie/ecc before 2.0.1, has a branch-based timing leak in Point addition. (This Composer package is also known as phpecc/phpecc on GitHub, previously known as the Matyas Danter ECC library.) Paragon Initiative Enterprises hard-forked phpecc/phpecc and discovered the issue in the original code, then released v2.0.1 which fixes the vulnerability. The upstream code is no longer maintained and remains vulnerable for all versions. Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Dec 05, 2024 · Source: OSV.dev
GHSA-346h-749j-r28w
Apr 25, 2024
PHPECC vulnerable to multiple cryptographic side-channel attacks
9.1
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
None
ECDSA CanonicalizationPHPECC is vulnerable to malleable ECDSA signature attacks. Constant-Time SignerWhen generating a new ECDSA signature, the GMPMath adapter was used. This class wraps the GNU Multiple Precision arithmetic library (GMP), which does not aim to provide constant-time implementations of algorithms. An attacker capable of triggering many signatures and studying the time it takes to perform each operation would be able to leak the secret number, EcDH Timing LeaksWhen calculating a shared secret using the Even though the library implements a Montgomery ladder, the Affected versions
0.2.0
v0.3.0
v0.3.1
v0.3.2
v0.4.0
v0.4.1
v0.4.2
v0.4.3
v0.4.4
v0.4.5
v0.4.6
v0.4.7
+ 4 more Show less
v0.5.0
v0.5.1
v0.5.2
v1.0.0
References Updated Nov 28, 2024 · Source: OSV.dev |