CVE-2019-16143

Severity CVSS v4.0:
Pending analysis
Type:
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
Publication date:
09/09/2019
Last modified:
31/08/2020

Description

An issue was discovered in the blake2 crate before 0.8.1 for Rust. The BLAKE2b and BLAKE2s algorithms, when used with HMAC, produce incorrect results because the block sizes are half of the required sizes.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:blake2:blake2-rust:*:*:*:*:*:*:*:* 0.8.1 (excluding)


References to Advisories, Solutions, and Tools