there is a possible way to bypass cryptographic...
High severity
Unreviewed
Published
Jul 13, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Jul 13, 2023
Published to the GitHub Advisory Database
Jul 13, 2023
Last updated
Apr 4, 2024
there is a possible way to bypass cryptographic assurances due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
References