Debian LTS Advisory DLA-2997-1                [email protected]
https://www.debian.org/lts/security/                       Sven Eckelmann
May 07, 2022                                  https://wiki.debian.org/LTS
Package        : ecdsautils
Version        : 0.3.2+git20151018-2+deb9u1
CVE ID         : CVE-2022-24884

In ecdsautils, a collection of ECDSA elliptic curve cryptography command
line tools, an improper verification of cryptographic signatures was
detected. A signature consisting only of zeroes is always considered
valid, making it trivial to forge signatures.

For Debian 9 stretch, this problem has been fixed in version

