0.81 fixes biased P-521 nonces
Catalog row in Vendor License Evidence · Cited
- Kind
- Documentation excerpt
- Excerpt
- "NIST P521 / ecdsa-sha2-nistp521 signatures are no longer generated with biased values of k. The previous bias compromises private keys."
- Locator
- Change log, 0.81 (released 2024-04-15)
- Applies to
- Releases before 0.81 compromise NIST P-521 keys (CVE-2024-31497)
- Sources