High severity7.5NVD Advisory· Published Dec 18, 2023· Updated Jun 17, 2026
CVE-2023-50981
CVE-2023-50981
Description
ModularSquareRoot in Crypto++ (aka cryptopp) through 8.9.0 allows attackers to cause a denial of service (infinite loop) via crafted DER public-key data associated with squared odd numbers, such as the square of 268995137513890432434389773128616504853.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- Crypto++/Crypto++description
- Range: <=8.9.0
- osv-coords4 versionspkg:rpm/opensuse/libcryptopp&distro=openSUSE%20Leap%2015.5pkg:rpm/opensuse/libcryptopp&distro=openSUSE%20Tumbleweedpkg:rpm/suse/libcryptopp&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP5pkg:rpm/suse/libcryptopp&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2015%20SP4
< 8.6.0-150400.3.6.1+ 3 more
- (no CPE)range: < 8.6.0-150400.3.6.1
- (no CPE)range: < 8.9.0-2.1
- (no CPE)range: < 8.6.0-150400.3.6.1
- (no CPE)range: < 8.6.0-150400.3.6.1
Patches
Vulnerability mechanics
References
1- github.com/weidai11/cryptopp/issues/1249nvdExploitIssue Tracking
News mentions
0No linked articles in our index yet.