GHSA-cm2q-67xf-jw8cMediumCVSS 4.7

During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time...

Published
May 24, 2022
Last Modified
August 19, 2026

🔗 CVE IDs covered (1)

📋 Description

During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

🔗 References (6)