Fedora python-ecdsa CVE-2019-14859 Signature Verification Bypass Vulnerability

description-logoDescription

A flaw was found in python-ecdsa where it did not correctly verify whether signatures used DER encoding. Without this verification, a malformed signature could be accepted, making the signature malleable. Without proper verification, an attacker could use a malleable signature to create false transactions.

affected-products-logoAffected Applications

python-ecdsa

CVE References

CVE-2019-14859