Vulnerability Report: GO-2023-1904
- CVE-2022-47931, GHSA-cvcx-g7wh-x8rf
- Affects: github.com/bnb-chain/tss-lib, github.com/binance-chain/tss-lib
- Published: Jul 11, 2023
- Modified: May 22, 2024
Collision of hash values in github.com/bnb-chain/tss-lib.
For detailed information about this vulnerability, visit https://medium.com/@iofinnet/security-disclosure-for-ecdsa-and-eddsa-threshold-signature-schemes-4e969af7155b.
Affected Packages
-
PathGo VersionsSymbols
-
before v1.3.6-0.20230324145555-bb6fb30bd3eb
-
all versions, no known fixed
Aliases
References
- https://medium.com/@iofinnet/security-disclosure-for-ecdsa-and-eddsa-threshold-signature-schemes-4e969af7155b
- https://github.com/bnb-chain/tss-lib/pull/233
- https://vuln.go.dev/ID/GO-2023-1904.json
Feedback
See anything missing or incorrect?
Suggest an edit to this report.