logo

Critical Key Flaw in Fedora's perl-Crypt-DSA Affects Key Generation

ID: 342da221-00c2-55a0-8947-0ea4790ddd0f

STIX ID: report--342da221-00c2-55a0-8947-0ea4790ddd0f

Feed Name: ThreatCluster

Threat Score
75/100

Date Published: 2026-07-12

Date Updated: 2026-07-18

...
...

A critical cryptographic vulnerability (CVE-2026-14570) was discovered in the perl-Crypt-DSA package on Fedora 43 and 44 that introduces a modulo bias in private key generation, enabling attackers to recover private keys after generating hundreds of signatures; users are advised to consider keys compromised and generate new ones immediately, and updates addressing the flaw were released on July 3, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.