CNNVD-202507-3427 Information
Jul 27, 2025
cve
CNNVD ID
CNNVD-202507-3427
Related CVE
- CNNVD Published: 2025-07-27
Description (Chinese)
curve25519-dalek crate是dalek cryptography开源的一个Rust库。 curve25519-dalek crate 4.1.3之前版本存在安全漏洞,该漏洞源于可能会泄露私钥和其他秘密。
Description (English)
Curve25519-dalek Krate is a Rust bank, an open source of Dalek cryptography. There was a security loophole in the previous version of Curve 25519-dalek crime 4.1.3, which originated from the possibility of leaking private keys and other secrets.
Hazard Level
Critical
Vulnerability Type
其他
Affected Vendor
dalek cryptography
Published
2025-07-27
Last Modified
2026-02-24
References
https://crates.io/crates/curve25519-dalek https://github.com/dalek-cryptography/curve25519-dalek/pull/659 https://rustsec.org/advisories/RUSTSEC-2024-0344.html
Patch
https://github.com/dalek-cryptography/curve25519-dalek/tags
Share on: