pqc_kyber
Activity
- Latest release
- 3y ago
- Total releases
- 8
- Cadence
- ~2 months
- Last 12 months
- 0
Details
- License
- MIT/Apache-2.0
- First release
- May 24, 2021
| Version | Released | |
|---|---|---|
0.7.1
unknown
1 CVE
GHSA-x5j2-g63m-f8g4
RUSTSEC-2023-0079
Feb 09, 2024
pqc_kyber KyberSlash: division timings depending on secrets
7.4
/ 10
High
Network
High
None
None
Unchanged
High
High
None
Various Kyber software libraries in various environments leak secret information into timing, specifically because
The KyberSlash pages track which Kyber libraries have this issue, and include a FAQ about the issue. AuthorThe KyberSlash pages were written by Daniel J. Bernstein. The FAQ originally said "I", but some people seemed to have trouble finding this authorship statement, so the FAQ now says "Bernstein" instead. URLThe permanent link for the KyberSlash pages is https://kyberslash.cr.yp.to. Mitigation status in pqc_kyber crateThe issues has not been resolved in the References Updated Apr 15, 2024 · Source: OSV.dev |
0.7.1
unknown
Dependencies (12)
+ 4 more |
|
0.7.0
unknown
1 CVE
GHSA-x5j2-g63m-f8g4
RUSTSEC-2023-0079
Feb 09, 2024
pqc_kyber KyberSlash: division timings depending on secrets
7.4
/ 10
High
Network
High
None
None
Unchanged
High
High
None
Various Kyber software libraries in various environments leak secret information into timing, specifically because
The KyberSlash pages track which Kyber libraries have this issue, and include a FAQ about the issue. AuthorThe KyberSlash pages were written by Daniel J. Bernstein. The FAQ originally said "I", but some people seemed to have trouble finding this authorship statement, so the FAQ now says "Bernstein" instead. URLThe permanent link for the KyberSlash pages is https://kyberslash.cr.yp.to. Mitigation status in pqc_kyber crateThe issues has not been resolved in the References Updated Apr 15, 2024 · Source: OSV.dev |
0.7.0
unknown
Dependencies (12)
+ 4 more |
|
0.6.0
unknown
1 CVE
GHSA-x5j2-g63m-f8g4
RUSTSEC-2023-0079
Feb 09, 2024
pqc_kyber KyberSlash: division timings depending on secrets
7.4
/ 10
High
Network
High
None
None
Unchanged
High
High
None
Various Kyber software libraries in various environments leak secret information into timing, specifically because
The KyberSlash pages track which Kyber libraries have this issue, and include a FAQ about the issue. AuthorThe KyberSlash pages were written by Daniel J. Bernstein. The FAQ originally said "I", but some people seemed to have trouble finding this authorship statement, so the FAQ now says "Bernstein" instead. URLThe permanent link for the KyberSlash pages is https://kyberslash.cr.yp.to. Mitigation status in pqc_kyber crateThe issues has not been resolved in the References Updated Apr 15, 2024 · Source: OSV.dev |
0.6.0
unknown
Dependencies (12)
+ 4 more |
|
0.5.0
unknown
1 CVE
GHSA-x5j2-g63m-f8g4
RUSTSEC-2023-0079
Feb 09, 2024
pqc_kyber KyberSlash: division timings depending on secrets
7.4
/ 10
High
Network
High
None
None
Unchanged
High
High
None
Various Kyber software libraries in various environments leak secret information into timing, specifically because
The KyberSlash pages track which Kyber libraries have this issue, and include a FAQ about the issue. AuthorThe KyberSlash pages were written by Daniel J. Bernstein. The FAQ originally said "I", but some people seemed to have trouble finding this authorship statement, so the FAQ now says "Bernstein" instead. URLThe permanent link for the KyberSlash pages is https://kyberslash.cr.yp.to. Mitigation status in pqc_kyber crateThe issues has not been resolved in the References Updated Apr 15, 2024 · Source: OSV.dev |
0.5.0
unknown
Dependencies (12)
+ 4 more |
|
0.4.0
unknown
1 CVE
GHSA-x5j2-g63m-f8g4
RUSTSEC-2023-0079
Feb 09, 2024
pqc_kyber KyberSlash: division timings depending on secrets
7.4
/ 10
High
Network
High
None
None
Unchanged
High
High
None
Various Kyber software libraries in various environments leak secret information into timing, specifically because
The KyberSlash pages track which Kyber libraries have this issue, and include a FAQ about the issue. AuthorThe KyberSlash pages were written by Daniel J. Bernstein. The FAQ originally said "I", but some people seemed to have trouble finding this authorship statement, so the FAQ now says "Bernstein" instead. URLThe permanent link for the KyberSlash pages is https://kyberslash.cr.yp.to. Mitigation status in pqc_kyber crateThe issues has not been resolved in the References Updated Apr 15, 2024 · Source: OSV.dev |
0.4.0
unknown
Dependencies (10)
+ 2 more |
|
0.3.0
unknown
1 CVE
GHSA-x5j2-g63m-f8g4
RUSTSEC-2023-0079
Feb 09, 2024
pqc_kyber KyberSlash: division timings depending on secrets
7.4
/ 10
High
Network
High
None
None
Unchanged
High
High
None
Various Kyber software libraries in various environments leak secret information into timing, specifically because
The KyberSlash pages track which Kyber libraries have this issue, and include a FAQ about the issue. AuthorThe KyberSlash pages were written by Daniel J. Bernstein. The FAQ originally said "I", but some people seemed to have trouble finding this authorship statement, so the FAQ now says "Bernstein" instead. URLThe permanent link for the KyberSlash pages is https://kyberslash.cr.yp.to. Mitigation status in pqc_kyber crateThe issues has not been resolved in the References Updated Apr 15, 2024 · Source: OSV.dev |
0.3.0
unknown
Dependencies (9)
+ 1 more |
|
0.2.1
unknown
1 CVE
GHSA-x5j2-g63m-f8g4
RUSTSEC-2023-0079
Feb 09, 2024
pqc_kyber KyberSlash: division timings depending on secrets
7.4
/ 10
High
Network
High
None
None
Unchanged
High
High
None
Various Kyber software libraries in various environments leak secret information into timing, specifically because
The KyberSlash pages track which Kyber libraries have this issue, and include a FAQ about the issue. AuthorThe KyberSlash pages were written by Daniel J. Bernstein. The FAQ originally said "I", but some people seemed to have trouble finding this authorship statement, so the FAQ now says "Bernstein" instead. URLThe permanent link for the KyberSlash pages is https://kyberslash.cr.yp.to. Mitigation status in pqc_kyber crateThe issues has not been resolved in the References Updated Apr 15, 2024 · Source: OSV.dev |
0.2.1
unknown
Dependencies (6)
|
|
0.2.0
unknown
1 CVE
GHSA-x5j2-g63m-f8g4
RUSTSEC-2023-0079
Feb 09, 2024
pqc_kyber KyberSlash: division timings depending on secrets
7.4
/ 10
High
Network
High
None
None
Unchanged
High
High
None
Various Kyber software libraries in various environments leak secret information into timing, specifically because
The KyberSlash pages track which Kyber libraries have this issue, and include a FAQ about the issue. AuthorThe KyberSlash pages were written by Daniel J. Bernstein. The FAQ originally said "I", but some people seemed to have trouble finding this authorship statement, so the FAQ now says "Bernstein" instead. URLThe permanent link for the KyberSlash pages is https://kyberslash.cr.yp.to. Mitigation status in pqc_kyber crateThe issues has not been resolved in the References Updated Apr 15, 2024 · Source: OSV.dev |
0.2.0
unknown
Dependencies (6)
|