Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A remote attacker can supply a short X-Wing HPKE encapsulated key and trigger an out-of-bounds read in the C decapsulation path, potentially causing a crash or memory disclosure depending on runtime protections. This issue is fixed in swift-crypto version 4.3.1.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Swift Crypto 安全漏洞
Vulnerability Description
Swift Crypto是Apple开源的一个跨平台加密工具库。 Swift Crypto 4.3.1之前版本存在安全漏洞,该漏洞源于远程攻击者可提供短X-Wing HPKE封装密钥并触发C解封装路径中的越界读取,可能导致崩溃或内存泄露。
CVSS Information
N/A
Vulnerability Type
N/A