```toml [advisory] id = "RUSTSEC-2019-0004" package = "libp2p-core" aliases = ["CVE-2019-15545"] date = "2019-05-15" [versions] patched = ["^0.7.1", ">= 0.8.1"] unaffected = ["< 0.3"] ``` # Failure to properly verify ed25519 signatures makes any signature valid Affected versions of this crate did not properly verify ed25519 signatures. Any signature with a correct length was considered valid. This allows an attacker to impersonate any node identity.