Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-49q7-c7j4-3p7m | Elliptic allows BER-encoded signatures |
Mon, 03 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 22 Nov 2024 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:acm:2.8::el8 cpe:/a:redhat:multicluster_engine:2.3::el8 |
Tue, 29 Oct 2024 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:acm:2.9::el8 cpe:/a:redhat:multicluster_engine:2.4::el8 |
Fri, 11 Oct 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:acm:2.11::el9 |
Fri, 11 Oct 2024 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:multicluster_engine:2.6::el8 cpe:/a:redhat:multicluster_engine:2.6::el9 |
Thu, 19 Sep 2024 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat acm
|
|
| CPEs | cpe:/a:redhat:acm:2.10::el9 | |
| Vendors & Products |
Redhat acm
|
Wed, 18 Sep 2024 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat multicluster Engine
|
|
| CPEs | cpe:/a:redhat:multicluster_engine:2.5::el8 | |
| Vendors & Products |
Redhat multicluster Engine
|
Fri, 06 Sep 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat service Mesh |
|
| CPEs | cpe:/a:redhat:service_mesh:2.4::el8 cpe:/a:redhat:service_mesh:2.5::el8 |
|
| Vendors & Products |
Redhat
Redhat service Mesh |
Wed, 07 Aug 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Elliptic Project
Elliptic Project elliptic |
|
| Weaknesses | CWE-347 | |
| CPEs | cpe:2.3:a:elliptic_project:elliptic:6.5.6:*:*:*:*:node.js:*:* | |
| Vendors & Products |
Elliptic Project
Elliptic Project elliptic |
|
| Metrics |
ssvc
|
Wed, 07 Aug 2024 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | elliptic: nodejs/elliptic: From NVD collector | elliptic: nodejs/elliptic: ECDSA implementation malleability due to BER-enconded signatures being allowed |
| Weaknesses | CWE-325 |
Tue, 06 Aug 2024 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | elliptic: From NVD collector | elliptic: nodejs/elliptic: From NVD collector |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-03T22:04:54.848Z
Reserved: 2024-08-02T00:00:00.000Z
Link: CVE-2024-42461
Updated: 2025-11-03T22:04:54.848Z
Status : Modified
Published: 2024-08-02T07:16:10.230
Modified: 2025-11-03T22:18:06.760
Link: CVE-2024-42461
OpenCVE Enrichment
No data.
Github GHSA