Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-50981


ModularSquareRoot in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (infinite loop) via crafted DER public-key data associated with squared odd numbers, such as the square of 268995137513890432434389773128616504853.


Published

2023-12-18T04:15:51.147

Last Modified

2025-05-07T21:15:59.267

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-835
  • Type: Secondary
    CWE-835

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application cryptopp crypto\+\+ ≤ 8.9.0 Yes

References