diff --git a/crates/sodiumoxide/RUSTSEC-0000-0000.toml b/crates/sodiumoxide/RUSTSEC-0000-0000.toml new file mode 100644 index 000000000..0669efe3f --- /dev/null +++ b/crates/sodiumoxide/RUSTSEC-0000-0000.toml @@ -0,0 +1,18 @@ +[advisory] +id = "RUSTSEC-0000-0000" +package = "sodiumoxide" +date = "2019-10-11" +url = "https://github.com/sodiumoxide/sodiumoxide/pull/381" + +title = "generichash::Digest::eq always return true" +description = """ +PartialEq implementation for generichash::Digest has compared itself to itself. + +Digest::eq always returns true and Digest::ne always returns false. +""" +patched_versions = [">= 0.2.5"] +keywords = ["cryptography"] + +[affected.functions] +"sodiumoxide::crypto::generichash::Digest::eq" = ["< 0.2.5, >= 0.1.0"] +"sodiumoxide::crypto::generichash::Digest::ne" = ["< 0.2.5, >= 0.1.0"]