AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatures.
Metrics
Affected Vendors & Products
References
History
Sat, 29 Nov 2025 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 29 Nov 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatures. | AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatures. |
Status: PUBLISHED
Assigner: VulnCheck
Published: 2024-01-19T20:44:34.957Z
Updated: 2025-11-29T01:26:30.217Z
Reserved: 2024-01-19T17:35:09.984Z
Link: CVE-2024-23680
Updated: 2024-08-01T23:06:25.440Z
Status : Modified
Published: 2024-01-19T21:15:10.140
Modified: 2025-11-29T02:15:51.467
Link: CVE-2024-23680
No data.