Trail of Bits

Open Quantum Safe liboqs

Type

Security review

Client

Open Quantum Safe

Date

2025-04

Domain

Crypto

Effort

5 wks

Section

Cryptography Reviews

Trail of Bits's security review of Open Quantum Safe (Apr 2025) identified 3 issues: 1 low, and 2 informational.

Findings · 3

  1. 1 Undefined arguments in CI workflow commands Informational
  2. 2 Missing OQS_OPENSSL_GUARD call Low
  3. 3 Memset used to zero out memory instead of OQS_MEM_CLEANSE Informational

Findings extracted from the published report PDF. See the full report below for details and remediation.

Related