CVE-2024-45193 Information
Aug 24, 2024
cve
Description
An issue was discovered in Matrix libolm (aka Olm) through 3.2.16. There is Ed25519 signature malleability due to lack of validation criteria (does not ensure that S < n). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
Reference
https://soatok.blog/2024/08/14/security-issues-in-matrixs-olm-library/ https://gitlab.matrix.org/matrix-org/olm/ https://news.ycombinator.com/item?id=41249371 https://gitlab.matrix.org/matrix-org/olm/-/commit/6d4b5b07887821a95b144091c8497d09d377f985
Share on: