01 Record index
Signature validation vulnerability affecting DigiDoc applications
Signature validation vulnerability affecting DigiDoc applications
Exploit-prediction scores from FIRST. Independent scoring and analysis status from the NVD. Vendor severity from Red Hat. Exploitation assessment and catalog membership from CISA.
Systems integrating libdigidocpp should update to version 4.2.1 or later. Users of DigiDoc applications should update to fixed versions provided by the vendor: DigiDoc4 - 4.8.2 or later, RIA DigiDoc Android - 2.7.2 or later, and RIA DigiDoc iOS - 2.8.1 or later. Signatures that were validated with the vulnerable software versions should be revalidated.