In Charm 0.43, any single user can decrypt DAC-MACS or MA-ABE-YJ14 data.
The product uses a broken or risky cryptographic algorithm or protocol.
Link | Tags |
---|---|
https://github.com/JHUISI/charm/issues/276 | issue tracking third party advisory |
https://jhuisi.github.io/charm/charm/schemes/abenc/abenc_dacmacs_yj14.html | third party advisory |
https://jhuisi.github.io/charm/_modules/abenc_maabe_yj14.html | third party advisory patch |
https://eprint.iacr.org/2020/460 | third party advisory |
https://www2.hci.uni-hannover.de/papers/Tan2019.pdf | third party advisory technical description |