Does Mumble encryption use broken AES OCB2 ?

It crashed, it is bugged, ...
Post Reply
faucet
Posts: 1
Joined: 27 Mar 2019, 17:50

Does Mumble encryption use broken AES OCB2 ?

Post by faucet »

Does Mumble use AES OCB2 for voice data encryption and is the implementation susceptible
to the plaintext recovery attack by Poettering/Iwata 2018?

:geek:

Zing
Posts: 10
Joined: 21 Sep 2019, 22:59

Re: Does Mumble encryption use broken AES OCB2 ?

Post by Zing »

I looked through the code, and as far as I can tell, no. It seems to be using OCB1 which is not vulnerable to this attack.

Post Reply