CVE

Id
95943  
CVE No.
CVE-2016-9123  
Status
Candidate  
Description
go-jose before 1.0.5 suffers from a CBC-HMAC integer overflow on 32-bit architectures. An integer overflow could lead to authentication bypass for CBC-HMAC encrypted ciphertexts on 32-bit architectures.  
Phase
Assigned (20161031)  
Votes
None (candidate not yet proposed)  
Comments