/
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-x2jp-m7gv-89m5

Published

Last updated

https://images.chainguard.dev/security/CGA-x2jp-m7gv-89m5
Package

jenkins-2.504

Repository

Chainguard

Latest Update
Under investigation
Aliases
  • CVE-2020-36843
  • GHSA-p53j-g8pw-4w5f

Severity

Unknown

Summary

Ed25519 Signature Malleability in ed25519-java Due to Missing Scalar Range Check

Description

The implementation of EdDSA in EdDSA-Java (aka ed25519-java) through 0.3.0 exhibits signature malleability and does not satisfy the SUF-CMA (Strong Existential Unforgeability under Chosen Message Attacks) property. This allows attackers to create new valid signatures different from previous signatures for a known message.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Products

Chainguard ContainersChainguard LibrariesChainguard VMs