Junglewise Threat Intelligence

CVE-2023-26557: GO-2023-1733 - Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib

CVE-2023-26557 · Severity: low · CVSS 3.1 · Published 2023-07-11

Technologies: github.com/binance-chain/tss-lib (Go), github.com/bnb-chain/tss-lib (Go). Vendors: Go.

Executive brief

Timing attack from non-constant time scalar arithmetic in github.com/bnb-chain/tss-lib

Affected products

  • Go github.com/binance-chain/tss-lib
  • Go github.com/bnb-chain/tss-lib

Related threats