Vulnerability Report: GO-2023-2101
- GHSA-pffg-92cg-xf5c
- Affects: github.com/consensys/gnark-crypto
- Published: Oct 09, 2023
- Modified: May 20, 2024
Incorrect exponentiation results in github.com/consensys/gnark-crypto
For detailed information about this vulnerability, visit https://github.com/advisories/GHSA-pffg-92cg-xf5c.
Affected Packages
-
PathGo VersionsSymbols
-
before v0.12.1
2 unexported affected symbols
- G1Jac.mulWindowed
- G2Jac.mulWindowed
-
before v0.12.1
2 unexported affected symbols
- G1Jac.mulWindowed
- G2Jac.mulWindowed
-
before v0.12.1
2 unexported affected symbols
- G1Jac.mulWindowed
- G2Jac.mulWindowed
-
before v0.12.1
2 unexported affected symbols
- G1Jac.mulWindowed
- G2Jac.mulWindowed
-
before v0.12.1
2 unexported affected symbols
- G1Jac.mulWindowed
- G2Jac.mulWindowed
-
before v0.12.1
2 unexported affected symbols
- G1Jac.mulWindowed
- G2Jac.mulWindowed
-
before v0.12.1
2 unexported affected symbols
- G1Jac.mulWindowed
- G2Jac.mulWindowed
-
before v0.12.1
2 unexported affected symbols
- G1Jac.mulWindowed
- G2Jac.mulWindowed
-
before v0.12.1
1 unexported affected symbols
- G1Jac.mulWindowed
-
before v0.12.1
-
before v0.12.1
-
before v0.12.1
-
before v0.12.1
-
before v0.12.1
-
before v0.12.1
-
before v0.12.1
-
before v0.12.1
Aliases
References
- https://github.com/Consensys/gnark-crypto/pull/213
- https://github.com/Consensys/gnark-crypto/pull/451
- https://github.com/Consensys/gnark-crypto/commit/ec6be1a037f7c496d595c541a8a8d31c47bcfa3d
- https://eprint.iacr.org/2015/565
- https://github.com/advisories/GHSA-pffg-92cg-xf5c
- https://vuln.go.dev/ID/GO-2023-2101.json
Credits
- @asanso
Feedback
See anything missing or incorrect?
Suggest an edit to this report.