CVE-2024-45193

An issue was discovered in Matrix libolm through 3.2.16. There is Ed25519 signature malleability due to lack of validation criteria (does not ensure that S < n). This refers to the libolm implementation of Olm. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:matrix:olm:*:*:*:*:*:*:*:*

History

17 Jun 2025, 19:51

Type Values Removed Values Added
CPE cpe:2.3:a:matrix:olm:*:*:*:*:*:*:*:*
First Time Matrix
Matrix olm
References () https://news.ycombinator.com/item?id=41249371 - () https://news.ycombinator.com/item?id=41249371 - Issue Tracking
References () https://soatok.blog/2024/08/14/security-issues-in-matrixs-olm-library/ - () https://soatok.blog/2024/08/14/security-issues-in-matrixs-olm-library/ - Exploit
References () https://gitlab.matrix.org/matrix-org/olm/ - () https://gitlab.matrix.org/matrix-org/olm/ - Product
References () https://gitlab.matrix.org/matrix-org/olm/-/commit/6d4b5b07887821a95b144091c8497d09d377f985 - () https://gitlab.matrix.org/matrix-org/olm/-/commit/6d4b5b07887821a95b144091c8497d09d377f985 - Patch

01 Sep 2024, 22:15

Type Values Removed Values Added
Summary An issue was discovered in Matrix libolm through 3.2.16. There is Ed25519 signature malleability due to lack of validation criteria (does not ensure that S < n). NOTE: This vulnerability only affects products that are no longer supported by the maintainer. An issue was discovered in Matrix libolm through 3.2.16. There is Ed25519 signature malleability due to lack of validation criteria (does not ensure that S < n). This refers to the libolm implementation of Olm. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

28 Aug 2024, 19:15

Type Values Removed Values Added
Summary An issue was discovered in Matrix libolm (aka Olm) through 3.2.16. There is Ed25519 signature malleability due to lack of validation criteria (does not ensure that S < n). NOTE: This vulnerability only affects products that are no longer supported by the maintainer. An issue was discovered in Matrix libolm through 3.2.16. There is Ed25519 signature malleability due to lack of validation criteria (does not ensure that S < n). NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

22 Aug 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-22 16:15

Updated : 2025-06-17 19:51


NVD link : CVE-2024-45193

Mitre link : CVE-2024-45193


JSON object : View

Products Affected

matrix

  • olm
CWE

No CWE.