An issue was discovered in the sodiumoxide crate before 0.2.5 for Rust. generichash::Digest::eq compares itself to itself and thus has degenerate security properties.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| sodiumoxide(crates.io) | 0.2.0 | 0.2.5 | N/A |
CVSS Metrics