Skip to content

Commit

Permalink
Add some security considerations
Browse files Browse the repository at this point in the history
  • Loading branch information
cabo committed Jan 8, 2024
1 parent 0c91f68 commit b850713
Showing 1 changed file with 7 additions and 3 deletions.
10 changes: 7 additions & 3 deletions draft-ietf-cbor-cde.md
Original file line number Diff line number Diff line change
Expand Up @@ -275,9 +275,13 @@ and are encouraged to do so.

# Security Considerations

TODO Security


The security considerations in {{Section 10 of RFC8949@-cbor}} apply.
The use of deterministic encoding can mitigate issues arising out of
the use of non-preferred encodings specially crafted by an attacker.
However, this effect only accrues if the decoder actually checks that
deterministic encoding was applied correctly.
More generally, additional security properties of deterministic
encoding can rely on this check being performed properly.

# IANA Considerations

Expand Down

0 comments on commit b850713

Please sign in to comment.