ZeroHour

CVE-2019-16143

CVSS 3.1
9.8 critical
EPSS
<1%p59
Published
()
Modified
Description

An issue was discovered in the blake2 crate before 0.8.1 for Rust. The BLAKE2b and BLAKE2s algorithms, when used with HMAC, produce incorrect results because the block sizes are half of the required sizes.

Vendors
blake2
Products
blake2-rust
Weakness
CWE-327
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.