snow
Activity
- Latest release
- 1y ago
- Total releases
- 70
- Cadence
- ~19 days
- Last 12 months
- 0
Details
- License
- Apache-2.0 OR MIT
- First release
- Mar 10, 2017
| Version | Released | |
|---|---|---|
0.10.0
unknown
|
0.10.0
unknown
Dependencies (19)
+ 11 more |
|
0.10.0-beta.2
unknown
|
0.10.0-beta.2
unknown
Dependencies (19)
+ 11 more |
|
0.10.0-beta.1
unknown
|
0.10.0-beta.1
unknown
Dependencies (20)
+ 12 more |
|
0.10.0-alpha.1
unknown
|
0.10.0-alpha.1
unknown
Dependencies (22)
+ 14 more |
|
0.9.6
unknown
|
0.9.6
unknown
Dependencies (21)
+ 13 more |
|
0.9.5
unknown
|
0.9.5
unknown
Dependencies (21)
+ 13 more |
|
0.9.4
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.9.4
unknown
Dependencies (22)
+ 14 more |
|
0.9.3
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.9.3
unknown
Dependencies (22)
+ 14 more |
|
0.9.2
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.9.2
unknown
Dependencies (22)
+ 14 more |
|
0.9.1
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.9.1
unknown
Dependencies (22)
+ 14 more |
|
0.9.0
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.9.0
unknown
Dependencies (22)
+ 14 more |
|
0.8.1
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.8.1
unknown
yanked
Dependencies (22)
+ 14 more |
|
0.8.0
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.8.0
unknown
Dependencies (21)
+ 13 more |
|
0.7.3
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.3
unknown
yanked
Dependencies (21)
+ 13 more |
|
0.7.2
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.2
unknown
Dependencies (21)
+ 13 more |
|
0.7.1
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.1
unknown
Dependencies (21)
+ 13 more |
|
0.7.0
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.0
unknown
Dependencies (21)
+ 13 more |
|
0.7.0-alpha5
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.0-alpha5
unknown
Dependencies (21)
+ 13 more |
|
0.7.0-alpha4
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.0-alpha4
unknown
Dependencies (21)
+ 13 more |
|
0.7.0-alpha3
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.0-alpha3
unknown
Dependencies (21)
+ 13 more |
|
0.7.0-alpha2
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.0-alpha2
unknown
Dependencies (19)
+ 11 more |
|
0.7.0-alpha1
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.7.0-alpha1
unknown
Dependencies (19)
+ 11 more |
|
0.6.2
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.6.2
unknown
Dependencies (17)
+ 9 more |
|
0.6.1
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.6.1
unknown
Dependencies (17)
+ 9 more |
|
0.6.0
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.6.0
unknown
Dependencies (17)
+ 9 more |
|
0.6.0-alpha2
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.6.0-alpha2
unknown
yanked
Dependencies (20)
+ 12 more |
|
0.6.0-alpha1
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.6.0-alpha1
unknown
yanked
Dependencies (20)
+ 12 more |
|
0.5.2
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.5.2
unknown
Dependencies (23)
+ 15 more |
|
0.5.1
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.5.1
unknown
Dependencies (22)
+ 14 more |
|
0.5.0
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.5.0
unknown
Dependencies (22)
+ 14 more |
|
0.5.0-alpha2
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.5.0-alpha2
unknown
yanked
Dependencies (22)
+ 14 more |
|
0.5.0-alpha1
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.5.0-alpha1
unknown
yanked
Dependencies (22)
+ 14 more |
|
0.4.2
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.4.2
unknown
Dependencies (21)
+ 13 more |
|
0.4.1
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.4.1
unknown
Dependencies (21)
+ 13 more |
|
0.4.0
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.4.0
unknown
Dependencies (21)
+ 13 more |
|
0.4.0-alpha2
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.4.0-alpha2
unknown
yanked
Dependencies (21)
+ 13 more |
|
0.4.0-alpha1
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.4.0-alpha1
unknown
yanked
Dependencies (21)
+ 13 more |
|
0.3.1
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.3.1
unknown
Dependencies (21)
+ 13 more |
|
0.3.0
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.3.0
unknown
Dependencies (21)
+ 13 more |
|
0.3.0-alpha5
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.3.0-alpha5
unknown
yanked
Dependencies (21)
+ 13 more |
|
0.3.0-alpha4
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.3.0-alpha4
unknown
yanked
Dependencies (21)
+ 13 more |
|
0.3.0-alpha3
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.3.0-alpha3
unknown
yanked
Dependencies (21)
+ 13 more |
|
0.3.0-alpha2
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.3.0-alpha2
unknown
yanked
Dependencies (21)
+ 13 more |
|
0.3.0-alpha1
unknown
yanked
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.3.0-alpha1
unknown
yanked
Dependencies (21)
+ 13 more |
|
0.2.1
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.2.1
unknown
Dependencies (20)
+ 12 more |
|
0.2.0
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.2.0
unknown
Dependencies (20)
+ 12 more |
|
0.1.12
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.1.12
unknown
Dependencies (20)
+ 12 more |
|
0.1.11
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.1.11
unknown
Dependencies (20)
+ 12 more |
|
0.1.10
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.1.10
unknown
Dependencies (19)
+ 11 more |
|
0.1.9
unknown
1 CVE
CVE-2024-58265
GHSA-7g9j-g5jg-3vv3
RUSTSEC-2024-0011
Jan 24, 2024
Unauthenticated Nonce Increment in snow
3.1
/ 10
Low
Network
High
Low
None
Unchanged
None
None
Low
ImpactThere was a logic bug where unauthenticated payloads could still cause a nonce increment in snow's internal state. For an attacker with the ability to inject packets into the channel Noise is talking over, this allows a denial-of-service type attack which could prevent communication as it causes the sending and receiving side to be expecting different nonce values than would arrive. Note that this only affects those who are using the stateful PatchesThis has been patched in version 0.9.5, and all users are recommended to update. ReferencesThere will be a more formal report of this in the near future. Fixed in
0.9.5
References Updated Jul 28, 2025 · Source: OSV.dev |
0.1.9
unknown
Dependencies (16)
+ 8 more |