Security Advisories

IAC-2025-0022025-05–13Multiple vulnerabilities in openssl

Severity: low
Affected versions: 24.0.0 – 24.0.5
Fixed version: 24.0.6
Related CVEs: CVE-2024-13176, CVE-2024-9143
Multiple vulnerabilities have been found in openssl:

- Fixed timing side-channel in ECDSA signature computation. (CVE-2024-13176)- Fixed possible OOB memory access with invalid low-level GF(2^m) elliptic curve parameters. (CVE-2024-9143)

This bugs are not critical for the system and have a low severity.

Privacy settings

We use cookies to provide social media features and to analyze traffic to our website. More information

Accept all
Save & close