Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-27552

Опубликовано: 26 мар. 2025
Источник: debian
EPSS Низкий

Описание

DBIx::Class::EncodedColumn use the rand() function, which is not cryptographically secure to salt password hashes. This vulnerability is associated with program files Crypt/Eksblowfish/Bcrypt.pm. This issue affects DBIx::Class::EncodedColumn until 0.00032.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libdbix-class-encodedcolumn-perlfixed0.00020-3package
libdbix-class-encodedcolumn-perlignoredbookwormpackage
libdbix-class-encodedcolumn-perlpostponedbullseyepackage

Примечания

  • https://github.com/wreis/DBIx-Class-EncodedColumn/commit/5e9e51f574f7e64e8c014e9e4f00ee8fd87a5335 (0.11)

EPSS

Процентиль: 2%
0.0011
Низкий

Связанные уязвимости

CVSS3: 4
ubuntu
больше 1 года назад

DBIx::Class::EncodedColumn use the rand() function, which is not cryptographically secure to salt password hashes. This vulnerability is associated with program files Crypt/Eksblowfish/Bcrypt.pm. This issue affects DBIx::Class::EncodedColumn until 0.00032.

CVSS3: 4
nvd
больше 1 года назад

DBIx::Class::EncodedColumn use the rand() function, which is not cryptographically secure to salt password hashes. This vulnerability is associated with program files Crypt/Eksblowfish/Bcrypt.pm. This issue affects DBIx::Class::EncodedColumn until 0.00032.

CVSS3: 4
github
больше 1 года назад

DBIx::Class::EncodedColumn use the rand() function, which is not cryptographically secure to salt password hashes. This vulnerability is associated with program files Crypt/Eksblowfish/Bcrypt.pm. This issue affects DBIx::Class::EncodedColumn until 0.00032.

CVSS3: 4
fstec
больше 1 года назад

Уязвимость модуля perl-Crypt-Urandom-Token, связанная с недостаточной энтропией, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 2%
0.0011
Низкий