Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
AWS Encryption SDK for Java Improper Verification of Cryptographic Signature
Vulnerability Description
AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatures.
CVSS Information
N/A
Vulnerability Type
密码学签名的验证不恰当
Vulnerability Title
Amazon AWS Encryption SDK 数据伪造问题漏洞
Vulnerability Description
Amazon AWS Encryption SDK是美国亚马逊(Amazon)公司的一个应用于加密的开发工具包。 AWS Encryption SDK for Java 1.9.0之前版本、2.0.0版本至2.2.0之前版本存在安全漏洞,该漏洞源于错误地验证了一些无效的 ECDSA 签名。
CVSS Information
N/A
Vulnerability Type
N/A