An issue was discovered in the sodiumoxide crate before 0.2.5 for Rust. generichash::Digest::eq compares itself to itself and thus has degenerate security properties.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Sodiumoxide |
Sodiumoxide_project |
* |
0.2.5 (excluding) |
References