CVE-2025-69277

NameCVE-2025-69277
Descriptionlibsodium before ad3004e, in atypical use cases involving certain custom cryptography or untrusted data to crypto_core_ed25519_is_valid_point, mishandles checks for whether an elliptic curve point is valid because it sometimes allows points that aren't in the main cryptographic group.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDLA-4435-1, DSA-6094-1
Debian Bugs1124374

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libsodium (PTS)bullseye (security)1.0.18-1+deb11u1fixed
bookworm, bullseye, trixie1.0.18-1vulnerable
bookworm (security)1.0.18-1+deb12u1fixed
trixie (security)1.0.18-1+deb13u1fixed
forky, sid1.0.18-2fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libsodiumsourcebullseye1.0.18-1+deb11u1DLA-4435-1
libsodiumsourcebookworm1.0.18-1+deb12u1DSA-6094-1
libsodiumsourcetrixie1.0.18-1+deb13u1DSA-6094-1
libsodiumsource(unstable)1.0.18-21124374

Notes

https://00f.net/2025/12/30/libsodium-vulnerability/
Fixed by: https://github.com/jedisct1/libsodium/commit/ad3004ec8731730e93fcfbbc824e67eadc1c1bae

Search for package or bug name: Reporting problems