cve/2020/CVE-2020-13822.md
2024-06-09 00:33:16 +00:00

943 B

CVE-2020-13822

Description

The Elliptic package 6.5.2 for Node.js allows ECDSA signature malleability via variations in encoding, leading '\0' bytes, or integer overflows. This could conceivably have a security-relevant impact if an application relied on a single canonical signature.

POC

Reference

Github

No PoCs found on GitHub currently.