Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-f7q4-pwc6-w24p | Elliptic's EDDSA missing signature length check |
Mon, 03 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 20 Jun 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Indutny
Indutny elliptic |
|
| CPEs | cpe:2.3:a:indutny:elliptic:6.5.6:*:*:*:*:node.js:*:* | |
| Vendors & Products |
Indutny
Indutny elliptic |
Fri, 22 Nov 2024 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:acm:2.8::el8 cpe:/a:redhat:multicluster_engine:2.3::el8 |
Tue, 29 Oct 2024 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:acm:2.9::el8 cpe:/a:redhat:multicluster_engine:2.4::el8 |
Fri, 11 Oct 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:acm:2.11::el9 |
Fri, 11 Oct 2024 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:multicluster_engine:2.6::el8 cpe:/a:redhat:multicluster_engine:2.6::el9 |
Thu, 19 Sep 2024 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat acm
|
|
| CPEs | cpe:/a:redhat:acm:2.10::el9 | |
| Vendors & Products |
Redhat acm
|
Wed, 18 Sep 2024 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat multicluster Engine
|
|
| CPEs | cpe:/a:redhat:multicluster_engine:2.5::el8 | |
| Vendors & Products |
Redhat multicluster Engine
|
Fri, 06 Sep 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat service Mesh |
|
| CPEs | cpe:/a:redhat:service_mesh:2.4::el8 cpe:/a:redhat:service_mesh:2.5::el8 |
|
| Vendors & Products |
Redhat
Redhat service Mesh |
Fri, 09 Aug 2024 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | elliptic: From NVD collector | elliptic: nodejs/elliptic: EDDSA signature malleability due to missing signature length check |
| Weaknesses | CWE-325 |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-03T22:04:51.903Z
Reserved: 2024-08-02T00:00:00.000Z
Link: CVE-2024-42459
Updated: 2024-08-02T15:04:36.324Z
Status : Modified
Published: 2024-08-02T07:16:10.003
Modified: 2025-11-03T22:18:06.177
Link: CVE-2024-42459
OpenCVE Enrichment
No data.
Github GHSA