GHSA-77jf-fjjf-xcww

    Dashboard / Vulnerabilities / GHSA-77jf-fjjf-xcww

    GHSA-77jf-fjjf-xcww

    Published: 23 Aug 2019Last Modified: 8 Nov 2023
    Aliases:

    Summary: Invalid Curve Attack in openpgp

    Details: Versions of `openpgp` prior to 4.3.0 are vulnerable to an Invalid Curve Attack. The package's implementation of ECDH fails to verify the validity of the communication partner's public key. The package calculates the resulting key secret based on an altered curve instead of the specified elliptic curve. Attackers may exfiltrate the victim's private key by choosing the altered curve. An attack requires the attacker being able to initiate message decryption and record the result. Furthermore the victim's key must offer an ECDH public key. ## Recommendation Upgrade to version 4.3.0 or later. If you are upgrading from a version <4.0.0 it is highly recommended to read the `High-Level API Changes` section of the `openpgp` 4.0.0 release: https://github.com/openpgpjs/openpgpjs/releases/tag/v4.0.0

    Affected packages

    Package

    Name: openpgp

    Purl: pkg:npm/openpgp

    Affected ranges

    Type: SEMVER

    Events:

    Introduced- 0
    Fixed -4.3.0

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High