CNNVD-202512-5685 Information

CNNVD ID

CNNVD-202512-5685

CVE-2025-69277

  • CNNVD Published: 2025-12-31

Description (Chinese)

libsodium是Frank Denis个人开发者的一个加密软件库。 libsodium ad3004e之前版本存在安全漏洞,该漏洞源于对椭圆曲线点有效性检查处理不当,可能允许非主加密群组的点。

Description (English)

Libsodium is an encrypted software library for Frank Denis personal developers. The previous version of libsodium ad 3004e had a security loophole, which stemmed from the inappropriate handling of the validity check of elliptical curve points, which might allow points of non-main encryption groups.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-12-31

Last Modified

2026-02-24

References

https://00f.net/2025/12/30/libsodium-vulnerability/ https://github.com/jedisct1/libsodium/commit/ad3004ec8731730e93fcfbbc824e67eadc1c1bae https://ianix.com/pub/ed25519-deployment.html https://news.ycombinator.com/item?id=46435614

Share on: