An issue was discovered in the sha2 crate 0.9.7 before 0.9.8 for Rust. Hashes of long messages may be incorrect when the AVX2-accelerated backend is used.
The product uses a broken or risky cryptographic algorithm or protocol.
Link | Tags |
---|---|
https://rustsec.org/advisories/RUSTSEC-2021-0100.html | third party advisory |
https://raw.githubusercontent.com/rustsec/advisory-db/main/crates/sha2/RUSTSEC-2021-0100.md | third party advisory |