CVE-2024-34703
published 2024-06-30CVE-2024-34703: Botan is a C++ cryptography library. X.509 certificates can identify elliptic curves using either an object identifier or using explicit encoding of the…
PriorityP340high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.50%
39.5th percentile
Botan is a C++ cryptography library. X.509 certificates can identify elliptic curves using either an object identifier or using explicit encoding of the parameters. Prior to versions 3.3.0 and 2.19.4, an attacker could present an ECDSA X.509 certificate using explicit encoding where the parameters are very large. The proof of concept used a 16Kbit prime for this purpose. When parsing, the parameter is checked to be prime, causing excessive computation. This was patched in 2.19.4 and 3.3.0 to allow the prime parameter of the elliptic curve to be at most 521 bits. No known workarounds are available. Note that support for explicit encoding of elliptic curve parameters is deprecated in Botan.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| botan_project | botan | >= 0 < 2.19.3+dfsg-1+deb12u1 | 2.19.3+dfsg-1+deb12u1 |
| botan_project | botan | >= 0 < 2.19.4+dfsg-1 | 2.19.4+dfsg-1 |
| botan_project | botan | >= 0 < 2.19.1+dfsg-2ubuntu1+esm1 | 2.19.1+dfsg-2ubuntu1+esm1 |
| botan_project | botan | >= 0 < 2.19.3+dfsg-1ubuntu2+esm1 | 2.19.3+dfsg-1ubuntu2+esm1 |
| debian | botan | < botan 2.19.3+dfsg-1+deb12u1 (bookworm) | botan 2.19.3+dfsg-1+deb12u1 (bookworm) |
| randombit | botan | < 2.19.4 | 2.19.4 |
| randombit | botan | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian7.5HIGH
vendor_ubuntu5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
botan vulnerabilities
osv·2025-06-23·CVSS 5.3
CVE-2024-50382 [MEDIUM] botan vulnerabilities
botan vulnerabilities
It was discovered that Botan could have compiler dependent operations
induced under certain circumstances. An attacker could possibly use this
issue to cause undefined behavior. (CVE-2024-50382, CVE-2024-50383)
Bing Shi discovered that Botan did not limit the size of certain inputs
when checking primality and name constraints. An attacker could possibly
use this issue to cause a denial of service. (CVE-2024-34702,
CVE-2024-34703)
It was discovered that Botan did not correctly handle conflicting name
constraints. An attacker could possibly use this issue to bypass
authentication. (CVE-2024-39312)
OSV
CVE-2024-34703: Botan is a C++ cryptography library
osv·2024-06-30·CVSS 7.5
CVE-2024-34703 [HIGH] CVE-2024-34703: Botan is a C++ cryptography library
Botan is a C++ cryptography library. X.509 certificates can identify elliptic curves using either an object identifier or using explicit encoding of the parameters. Prior to versions 3.3.0 and 2.19.4, an attacker could present an ECDSA X.509 certificate using explicit encoding where the parameters are very large. The proof of concept used a 16Kbit prime for this purpose. When parsing, the parameter is checked to be prime, causing excessive computation. This was patched in 2.19.4 and 3.3.0 to allow the prime parameter of the elliptic curve to be at most 521 bits. No known workarounds are available. Note that support for explicit encoding of elliptic curve parameters is deprecated in Botan.
Ubuntu
Botan vulnerabilities
vendor_ubuntu·2025-06-23·CVSS 5.3
CVE-2024-50382 [MEDIUM] Botan vulnerabilities
Title: Botan vulnerabilities
Summary: Several security issues were fixed in Botan.
It was discovered that Botan could have compiler dependent operations
induced under certain circumstances. An attacker could possibly use this
issue to cause undefined behavior. (CVE-2024-50382, CVE-2024-50383)
Bing Shi discovered that Botan did not limit the size of certain inputs
when checking primality and name constraints. An attacker could possibly
use this issue to cause a denial of service. (CVE-2024-34702,
CVE-2024-34703)
It was discovered that Botan did not correctly handle conflicting name
constraints. An attacker could possibly use this issue to bypass
authentication. (CVE-2024-39312)
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2024-34703: botan - Botan is a C++ cryptography library. X.509 certificates can identify elliptic cu...
vendor_debian·2024·CVSS 7.5
CVE-2024-34703 [HIGH] CVE-2024-34703: botan - Botan is a C++ cryptography library. X.509 certificates can identify elliptic cu...
Botan is a C++ cryptography library. X.509 certificates can identify elliptic curves using either an object identifier or using explicit encoding of the parameters. Prior to versions 3.3.0 and 2.19.4, an attacker could present an ECDSA X.509 certificate using explicit encoding where the parameters are very large. The proof of concept used a 16Kbit prime for this purpose. When parsing, the parameter is checked to be prime, causing excessive computation. This was patched in 2.19.4 and 3.3.0 to allow the prime parameter of the elliptic curve to be at most 521 bits. No known workarounds are available. Note that support for explicit encoding of elliptic curve parameters is deprecated in Botan.
Scope: local
bookworm: resolved (fixed in 2.19.3+dfsg-1+deb12u1)
bullseye: open
trixie: resolved (fixe
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/randombit/botan/commit/08c404b23740babee1f6aa51b54e966029aadee4https://github.com/randombit/botan/commit/94e9154c143aa5264da6254a6a1be5bc66ee2b5ahttps://github.com/randombit/botan/security/advisories/GHSA-w4g2-7m2h-7xj7https://github.com/randombit/botan/commit/08c404b23740babee1f6aa51b54e966029aadee4https://github.com/randombit/botan/commit/94e9154c143aa5264da6254a6a1be5bc66ee2b5ahttps://github.com/randombit/botan/security/advisories/GHSA-w4g2-7m2h-7xj7
2024-06-30
Published