View Issue Details

IDProjectCategoryView StatusLast Update
0011251GNUnetcadet servicepublic2026-06-17 11:34
Reporterschanzen Assigned Toschanzen  
PrioritynormalSeverityminorReproducibilityhave not tried
Status resolvedResolutionfixed 
Target Version1.0.0Fixed in Version0.28.0 
Summary0011251: CADET encryption authentication smell
DescriptionThe header encyption HENCRYPT and the message encryption ENCRYPT according the spec should both be AEAD schemes

The CADET implementation takes a shortcut: It Encrypts the header and the plaintext separately with the respective keys using TWOFISH(AES(*)) and then appends a MAC using the HK that is calculated over both ciphertexts

Probably not breakable per se, but smells bad.
TagsNo tags attached.

Activities

schanzen

2026-06-17 11:34

administrator   ~0028923

Repaced with new AEAD API.

Issue History

Date Modified Username Field Change
2026-03-13 18:00 schanzen New Issue
2026-06-17 11:34 schanzen Assigned To => schanzen
2026-06-17 11:34 schanzen Status new => resolved
2026-06-17 11:34 schanzen Resolution open => fixed
2026-06-17 11:34 schanzen Fixed in Version => 0.28.0
2026-06-17 11:34 schanzen Note Added: 0028923