WRITEUP

WRITEUP
Exploit for CVE-2023-24533 - Multiplication - Info Disclosure
AI Analysis

This patch addresses CVE-2023-24532 in Go's crypto/internal/nistec by adding scalar reduction to prevent incorrect results in P-256 scalar multiplication due to incomplete addition formulas in assembly code. The fix ensures scalars are reduced modulo the group order before use.

Attack Type
other
Complexity
moderate
Reliability
reliable
Loading exploit code...
Download ZIP Password: eip
Vulnerability
CVE-2023-24533
Multiplication - Info Disclosure
HIGH
CVSS 7.5