Gnark Security Update Advisory (CVE-2025-57801)

Gnark Security Update Advisory (CVE-2025-57801)

Overview

 

We have released a security update to address a vulnerability in GNARK. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-57801

 

GNARK Versions: 0.14.0 and earlier

 

 

Resolved Vulnerabilities

 

Signature malleability vulnerability in gnark (CVE-2025-57801)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-57801

 

GNARK version: 0.14.0 or later

 

 

References

 

[1] Signature malleability in gnark EdDSA and ECDSA due to missing scalar checks
https://github.com/Consensys/gnark/security/advisories/GHSA-95v9-hv42-pwrj