漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
In elliptic-php versions priot to 1.0.6, Timing attacks might be possible which can result in practical recovery of the long-term private key generated by the library under certain conditions. Leakage of a bit-length of the scalar during scalar multiplication is possible on an elliptic curve which might allow practical recovery of the long-term private key.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
elliptic-php 竞争条件问题漏洞
Vulnerability Description
elliptic-php是一款基于PHP的椭圆曲线密码库。 elliptic-php 1.0.6之前版本中存在安全漏洞。攻击者可利用该漏洞恢复长期有效的私钥。
CVSS Information
N/A
Vulnerability Type
N/A