buildroot ▾
›
2025.02.x ▾
›
vulnerability
›
CVE-2023-50980
Component Overview
Vulnerability Overview
Name
CVE-2023-50980
Source
NVD (
link
)
Debian (
link
)
Description
gf2n.cpp in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (application crash) via DER public-key data for an F(2^m) curve, if the degree of each term in the polynomial is not strictly decreasing.
CWEs
Published Date
Dec 18, 2023
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://github.com/weidai11/cryptopp/issues/1248
Exploit
https://github.com/weidai11/cryptopp/issues/1248
Exploit
Analysis
#
Affected Component
Analysis
cryptopp
Exploitable
Vulnerability Rating
#
7.5
CVSSv31
Others affected component
#
Name
Project
Project Version
Version
Status
cryptopp
buildroot
master
8.9.0
Exploitable