Critical Key Flaw in Fedora's perl-Crypt-DSA Affects Key Generation
ID: 342da221-00c2-55a0-8947-0ea4790ddd0f
STIX ID: report--342da221-00c2-55a0-8947-0ea4790ddd0f
Feed Name: ThreatCluster
Threat Score
A critical cryptographic vulnerability (CVE-2026-14570) was discovered in the perl-Crypt-DSA package on Fedora 43 and 44 that introduces a modulo bias in private key generation, enabling attackers to recover private keys after generating hundreds of signatures; users are advised to consider keys compromised and generate new ones immediately, and updates addressing the flaw were released on July 3, 2026.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
