An issue was discovered in the blake2 crate before 0.8.1 for Rust. The BLAKE2b and BLAKE2s algorithms, when used with HMAC, produce incorrect results because the block sizes are half of the required sizes.
References
Link | Resource |
---|---|
https://rustsec.org/advisories/RUSTSEC-2019-0019.html | Third Party Advisory |
Configurations
Information
Published : 2019-09-09 05:15
Updated : 2020-08-31 08:13
NVD link : CVE-2019-16143
Mitre link : CVE-2019-16143
JSON object : View
CWE
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
Products Affected
blake2
- blake2-rust