First published: Fri May 24 2024(Updated: )
An issue in Open Quantum Safe liboqs v.10.0 allows a remote attacker to escalate privileges via the crypto_sign_signature parameter in the /pqcrystals-dilithium-standard_ml-dsa-44-ipd_avx2/sign.c component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
liboqs |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-31510 has a high severity rating due to its potential for remote privilege escalation.
To mitigate CVE-2024-31510, update to the latest version of Open Quantum Safe liboqs that addresses this vulnerability.
CVE-2024-31510 affects the Open Quantum Safe liboqs version 10.0 and potentially earlier versions.
Yes, CVE-2024-31510 can be exploited remotely, allowing attackers to escalate privileges.
CVE-2024-31510 specifically affects the crypto_sign_signature parameter in the /pqcrystals-dilithium-standard_ml-dsa-44-ipd_avx2/sign.c component.