GHSA-p53j-g8pw-4w5f
MODERATECVE-2020-36843The implementation of EdDSA in EdDSA-Java (aka ed25519-java) through 0.3.0 exhibits signature malleability and does not satisfy the SUF-CMA (Strong Existential Unforgeability under Chosen Message Attacks) property. This allows attackers to create new valid signatures different from previous signatures for a known message.
- Affected
- <= 0.3.0
- Fixed in
- not stated
- Weakness
- CWE-347
- Published
- 2025-03-13
- Source
- github