An issue was discovered in the sodiumoxide crate before 0.2.5 for Rust. generichash::Digest::eq compares itself to itself and thus has degenerate security properties.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Sodiumoxide | Sodiumoxide_project | * | 0.2.5 (excluding) |
References