CVE-2025-58157

Publication date

2025-08-29 21:21:35

Family

GitHub_M

State

PUBLISHED

Description

gnark is a zero-knowledge proof system framework. In version 0.12.0, there is a potential denial of service vulnerability when computing scalar multiplication is using the fake-GLV algorithm. This is because the algorithm didnt converge quickly enough for some of the inputs. This issue has been patched in version 0.13.0.