CVE-2020-11872

Published
View on NVD ↗
CVSS v3
7.5
HIGH
CVSS v2
5
MEDIUM
Affected
1
PROJECT

Description

The Cloud Functions subsystem in OpenTrace 1.0 might allow fabrication attacks by making billions of TempID requests before an AES-256-GCM key rotation occurs.

OpenTrace Cloud Functions. Reference implementation of the BlueTrace protocol.
GitHubGitHub
270