An issue exists in the sodiumoxide crate prior to 0.2.5 for Rust. generichash::Digest::eq compares itself to itself and thus has degenerate security properties.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sodiumoxide project sodiumoxide |