CVE-2022-29566
8.1
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.2 / Impact: 5.9
Source: NVD
Description
The Bulletproofs 2017/1066 paper mishandles Fiat-Shamir generation because the hash computation fails to include all of the public values from the Zero Knowledge proof statement as well as all of the public values computed in the proof, aka the Frozen Heart issue.
Affected (1)
Products: Bulletproofs Project: Bulletproofs
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
References (4)
Source: cve@mitre.org
ExploitThird Party Advisory
Source: cve@mitre.org
ProductTechnical DescriptionThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductTechnical DescriptionThird Party Advisory
Timeline
No history available yet.