Unrated severityNVD Advisory· Published Mar 9, 2006· Updated Jun 16, 2026
CVE-2006-1116
CVE-2006-1116
Description
The CBC-MAC integrity functions in the nCipher nCore API before 2.18 transmit the initialization vector IV as part of a message when the implementation uses a non-zero IV, which allows remote attackers to bypass integrity checks and modify messages without being detected.
Affected products
2Patches
Vulnerability mechanics
References
7- secunia.com/advisories/19137nvdPatchVendor Advisory
- securitytracker.com/idnvdPatchVendor Advisory
- www.ncipher.com/resources/96/sa13_cbcmac_iv_misleading_programming_interfacenvdPatchVendor Advisory
- www.securityfocus.com/bid/17011nvdPatch
- www.securityfocus.com/archive/1/427150/100/0/threadednvd
- www.vupen.com/english/advisories/2006/0862nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/25062nvd
News mentions
0No linked articles in our index yet.