VYPR

crates.io package

anoncreds-clsignatures

pkg:cargo/anoncreds-clsignatures

Vulnerabilities (3)

  • CVE-2024-22192Jan 16, 2024
    affected < 0.1.0fixed 0.1.0

    Ursa is a cryptographic library for use with blockchains. The revocation scheme that is part of the Ursa CL-Signatures implementations has a flaw that could impact the privacy guarantees defined by the AnonCreds verifiable credential model. Notably, a malicious verifier may be ab

  • CVE-2024-21670Jan 16, 2024
    affected >= 0

    Ursa is a cryptographic library for use with blockchains. The revocation schema that is part of the Ursa CL-Signatures implementations has a flaw that could impact the privacy guarantees defined by the AnonCreds verifiable credential model, allowing a malicious holder of a revoke

  • CVE-2022-31021Jan 16, 2024
    affected >= 0

    Ursa is a cryptographic library for use with blockchains. A weakness in the Hyperledger AnonCreds specification that is not mitigated in the Ursa and AnonCreds implementations is that the Issuer does not publish a key correctness proof demonstrating that a generated private key i