Back to search
CVE-2021-3114
Published: Jan 26, 2021
Modified: Aug 3, 2024
PUBLISHED
Description
In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go can generate incorrect outputs, related to an underflow of the lowest limb during the final complete reduction in the P-224 field.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://groups.google.com/g/golang-announce/c/mperVMGa98w
x_refsource_CONFIRM
https://github.com/golang/go/commit/d95ca9138026cbe40e0857d76a81a16d03230871
x_refsource_CONFIRM
FEDORA-2021-e435a8bb88
vendor-advisory
x_refsource_FEDORA
DSA-4848
vendor-advisory
x_refsource_DEBIAN
https://security.netapp.com/advisory/ntap-20210219-0001/
x_refsource_CONFIRM
[debian-lts-announce] 20210313 [SECURITY] [DLA 2591-1] golang-1.7 security update
mailing-list
x_refsource_MLIST
[debian-lts-announce] 20210313 [SECURITY] [DLA 2592-1] golang-1.8 security update
mailing-list
x_refsource_MLIST
GLSA-202208-02
vendor-advisory
x_refsource_GENTOO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now