libcrux-aesgcm
Activity
- Latest release
- 4mo ago
- Total releases
- 11
- Cadence
- ~daily
- Last 12 months
- 11
Details
- License
- Apache-2.0
- First release
- Nov 05, 2025
| Version | Released | |
|---|---|---|
0.0.8
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.8
unknown
Dependencies (10)
+ 2 more |
|
0.0.8-rc.2
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.8-rc.2
unknown
Dependencies (10)
+ 2 more |
|
0.0.8-rc.1
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.8-rc.1
unknown
Dependencies (10)
+ 2 more |
|
0.0.7
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.7
unknown
Dependencies (13)
+ 5 more |
|
0.0.7-pre.1
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.7-pre.1
unknown
Dependencies (13)
+ 5 more |
|
0.0.6
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.6
unknown
Dependencies (13)
+ 5 more |
|
0.0.6-pre.1
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.6-pre.1
unknown
Dependencies (13)
+ 5 more |
|
0.0.5
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.5
unknown
Dependencies (13)
+ 5 more |
|
0.0.5-pre.1
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.5-pre.1
unknown
Dependencies (13)
+ 5 more |
|
0.0.4
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.4
unknown
Dependencies (13)
+ 5 more |
|
0.0.4-pre.1
unknown
3 CVEs
RUSTSEC-2026-0210
Jul 15, 2026
`libcrux-aesgcm` Renamed to `libcrux-aes` Crate References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0211
Jul 14, 2026
Non-constant time Authentication Tag Check in AES-GCM Decryption
Medium
Network
Low
None
None
AES-GCM decryption used an implementation for checking the provided
authentication tag against the recomputed authentication tag that was
intended to be constant-time, but resulted in non-constant-time code
generation in certain circumstances.
Note that ImpactUsers of MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev
RUSTSEC-2026-0209
Jun 09, 2026
AES-GCM did not enforce limits on AAD length
Medium
Network
Low
None
None
NIST Special Publication 800-38D specifies that the bit length of the
AAD shall not exceed ImpactUse of AES-GCM with AAD of length exceeding the prescribed maximum length degrades the authentication security of the GCM tag. MitigationStarting from version References Updated Jul 17, 2026 · Source: OSV.dev |
0.0.4-pre.1
unknown
Dependencies (13)
+ 5 more |