Bramble Handshake Protocol (BHP) in Briar before 1.5.3 is not forward secure: eavesdroppers can decrypt network traffic between two accounts if they later compromise both accounts. NOTE: the eavesdropping is typically impractical because BHP runs over an encrypted session that uses the Tor hidden service protocol.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-05-24T00:00:00

Updated: 2024-08-02T15:54:14.203Z

Reserved: 2023-05-24T00:00:00

Link: CVE-2023-33982

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-05-24T18:15:10.927

Modified: 2023-06-01T15:55:22.407

Link: CVE-2023-33982

cve-icon Redhat

No data.