An issue was discovered in the chacha20 crate before 0.2.3 for Rust. A ChaCha20 counter overflow makes it easier for attackers to determine plaintext.
References
Link | Resource |
---|---|
https://rustsec.org/advisories/RUSTSEC-2019-0029.html | Third Party Advisory |
Configurations
Information
Published : 2020-12-31 02:15
Updated : 2021-01-06 07:21
NVD link : CVE-2019-25005
Mitre link : CVE-2019-25005
JSON object : View
CWE
CWE-190
Integer Overflow or Wraparound
Products Affected
chacha20_project
- chacha20