Логотип exploitDog
bind:CVE-2024-21530
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-21530

Количество 2

Количество 2

nvd логотип

CVE-2024-21530

больше 1 года назад

Versions of the package cocoon before 0.4.0 are vulnerable to Reusing a Nonce, Key Pair in Encryption when the encrypt, wrap, and dump functions are sequentially called. An attacker can generate the same ciphertext by creating a new encrypted message with the same cocoon object. **Note:** The issue does NOT affect objects created with Cocoon::new which utilizes ThreadRng.

CVSS3: 4.5
EPSS: Низкий
github логотип

GHSA-6878-6wc2-pf5h

больше 2 лет назад

Sequential calls of encryption API (`encrypt`, `wrap`, and `dump`) result in nonce reuse

CVSS3: 4.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-21530

Versions of the package cocoon before 0.4.0 are vulnerable to Reusing a Nonce, Key Pair in Encryption when the encrypt, wrap, and dump functions are sequentially called. An attacker can generate the same ciphertext by creating a new encrypted message with the same cocoon object. **Note:** The issue does NOT affect objects created with Cocoon::new which utilizes ThreadRng.

CVSS3: 4.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-6878-6wc2-pf5h

Sequential calls of encryption API (`encrypt`, `wrap`, and `dump`) result in nonce reuse

CVSS3: 4.5
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу