4 ms·
The article discusses interoperability issues; it isn't an attack or vulnerability. The issue is that implementations will reject valid signatures.
by srfilipek 6y ago
The article discusses interoperability issues; it isn't an attack or vulnerability.
The issue is that implementations will reject valid signatures.
- kelnage 6y agoYeah, sorry, my wording wasn’t clear. I meant that attacks exist based on not utilising appropriate validation criteria (and, for example, libsodium’s more strict criteria do indeed prevent them).
- laksdjfkasljdf 6y agoWhich attack(s) would that be?