Incorrect multiplication of unreduced P-256 scalars in filippo.io/nistec
Vulnerability Description
Multiplication of certain unreduced P-256 scalars produce incorrect results. There are no protocols known at this time that can be attacked due to this.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-24533
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Guido Vranken via the Ethereum Foundation bug bounty program
Affected Vendor
filippo.io/nistec
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.