Junglewise Threat Intelligence

RUSTSEC-2026-0209 - AES-GCM did not enforce limits on AAD length

Severity: medium · CVSS 4 · Published 2026-06-09

Technologies: libcrux-aesgcm (crates.io). Vendors: crates.io.

Executive brief

AES-GCM did not enforce limits on AAD length

Affected products

  • crates.io libcrux-aesgcm

Related threats