Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-55212 | The ed25519-dalek crate before 2 for Rust allows a double public key signing function oracle attack. The Keypair implementation leads to a simple computation for extracting a private key. |
Github GHSA |
GHSA-w5vr-6qhr-36cc | `ed25519-dalek` Double Public Key Signing Function Oracle Attack |
Tue, 29 Jul 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | ed25519-dalek: ed25519-dalek: Private Key Extraction Vulnerability | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Mon, 28 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 28 Jul 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-497 | |
| Metrics |
cvssV3_1
|
Mon, 28 Jul 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The ed25519-dalek crate before 2 for Rust allows a double public key signing function oracle attack. The Keypair implementation leads to a simple computation for extracting a private key. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-07-28T13:56:12.178Z
Reserved: 2025-07-28T00:00:00.000Z
Link: CVE-2022-50237
Updated: 2025-07-28T13:56:07.593Z
Status : Deferred
Published: 2025-07-28T02:15:24.540
Modified: 2026-04-15T00:35:42.020
Link: CVE-2022-50237
OpenCVE Enrichment
No data.
EUVD
Github GHSA