vulnerability

Red Hat OpenShift: CVE-2021-3114: incorrect operations on the P-224 curve

Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:N)
Published
2021-01-26
Added
2021-03-31
Modified
2025-04-11

Description

In Go before 1.14.14 and 1.15.x before 1.15.7, crypto/elliptic/p224.go can generate incorrect outputs, related to an underflow of the lowest limb during the final complete reduction in the P-224 field.

Solution(s)

linuxrpm-upgrade-cri-olinuxrpm-upgrade-cri-toolslinuxrpm-upgrade-golang-github-prometheus-promulinuxrpm-upgrade-ignitionlinuxrpm-upgrade-openshiftlinuxrpm-upgrade-openshift-clientslinuxrpm-upgrade-runc
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.