ModularSquareRoot in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (infinite loop) via crafted DER public-key data associated with squared odd numbers, such as the square of 268995137513890432434389773128616504853.
References
Link | Resource |
---|---|
https://github.com/weidai11/cryptopp/issues/1249 | Exploit Issue Tracking |
Configurations
History
No history.
Information
Published : 2023-12-18 04:15
Updated : 2023-12-27 19:09
NVD link : CVE-2023-50981
Mitre link : CVE-2023-50981
CVE.ORG link : CVE-2023-50981
JSON object : View
Products Affected
cryptopp
- crypto\+\+
CWE
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')