CVE-2026-3706 | mkj Dropbear up to 2025.89 S Range Check src/curve25519.c unpackneg signature verification (Issue 82)
A vulnerability, which was classified as problematic, has been found in mkj Dropbear up to 2025.89. Impacted is the function unpackneg of the file src/curve25519.c of the component S Range Check. This manipulation causes improper verification of cryptographic signature.
This vulnerability is handled as CVE-2026-3706. The attack can be initiated remotely. Additionally, an exploit exists.
To fix this issue, it is recommended to deploy a patch.