February 14, 2020
      
                  
        
  Author(s)
  Nicky W. Mouha,   Christopher T. Celi
 
       
            
    
    
        This paper describes a vulnerability in Apple's CoreCrypto library, which affects 11 out of the 12 implemented hash functions: every implemented hash function except MD2 (Message Digest 2), as well as several higher-level operations such as the Hash-based