CVE-2020-36843

The implementation of EdDSA in EdDSA-Java (aka ed25519-java) through 0.3.0 exhibits signature malleability and does not satisfy the SUF-CMA (Strong Existential Unforgeability under Chosen Message Attacks) property. This allows attackers to create new valid signatures different from previous signatures for a known message.
Configurations

No configuration.

History

13 Mar 2025, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-13 06:15

Updated : 2025-03-13 06:15


NVD link : CVE-2020-36843

Mitre link : CVE-2020-36843

CVE.ORG link : CVE-2020-36843


JSON object : View

Products Affected

No product.

CWE
CWE-347

Improper Verification of Cryptographic Signature