The ScalarMult and ScalarBaseMult methods of the P256 Curve may return an incorrect result if called with some specific unreduced scalars (a scalar larger than the order of the curve). This does not impact usages of crypto/ecdsa or crypto/ecdh.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Go

Published: 2023-03-08T19:40:45.425Z

Updated: 2024-08-02T10:56:04.340Z

Reserved: 2023-01-25T21:19:20.641Z

Link: CVE-2023-24532

cve-icon Vulnrichment

Updated: 2024-07-31T20:15:44.256Z

cve-icon NVD

Status : Modified

Published: 2023-03-08T20:15:09.413

Modified: 2023-11-07T04:08:30.867

Link: CVE-2023-24532

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-03-08T00:00:00Z

Links: CVE-2023-24532 - Bugzilla