CVE-2016-9243

Publication date

2017-03-27 17:00:00

Family

redhat

State

PUBLISHED

Description

HKDF in cryptography before 1.5.2 returns an empty byte-string if used with a length less than algorithm.digest_size.