chiavdf@0.12.2 vulnerabilities

Chia vdf verification (wraps C++)

Direct Vulnerabilities

Known vulnerabilities in the chiavdf package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Inadequate Encryption Strength

chiavdf is a Chia vdf verification (wraps C++)

Affected versions of this package are vulnerable to Inadequate Encryption Strength. Grinding attacks could be possible where some non-canonical encodings of a compressed form could be used to change its hash and thus the next challenges derived from it.

How to fix Inadequate Encryption Strength?

Upgrade chiavdf to version 1.0 or higher.

[,1.0)