{"id":"CVE-2024-48948","aliases":["GHSA-fc9h-whq2-v747"],"url":"https://o3.security/vulnerability/CVE-2024-48948","summary":"Valid ECDSA signatures erroneously rejected in Elliptic","details":"The Elliptic package 6.5.7 for Node.js, in its for ECDSA implementation, does not correctly verify valid signatures if the hash contains at least four leading 0 bytes and when the order of the elliptic curve's base point is smaller than the hash, because of an _truncateToN anomaly. This leads to valid signatures being rejected. Legitimate transactions or communications may be incorrectly flagged as invalid.","published":"2024-10-15T00:00:00Z","modified":"2026-09-08T03:45:12.676147563Z","cvss":{"score":4.8,"severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"npm","name":"elliptic","fixedVersion":"6.6.0"}],"fix":{"url":"https://github.com/indutny/elliptic/pull/322","label":"indutny/elliptic#322"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/48xxx/CVE-2024-48948.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-48948"},{"type":"ADVISORY","url":"https://security.netapp.com/advisory/ntap-20241220-0004/"},{"type":"REPORT","url":"https://github.com/indutny/elliptic/issues/321"},{"type":"FIX","url":"https://github.com/indutny/elliptic/pull/322"},{"type":"ARTICLE","url":"https://blog.trailofbits.com/2025/11/18/we-found-cryptography-bugs-in-the-elliptic-library-using-wycheproof/"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-09-08T03:45:12.676147563Z"}}