In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade curve25519-dalek
to version 4.1.3 or higher.
Affected versions of this package are vulnerable to Information Exposure due to the Scalar29::sub
and Scalar52::sub
functions. An attacker can potentially leak private keys and other secrets by exploiting the timing variability in these functions.