Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-4238

Опубликовано: 27 дек. 2022
Источник: nvd
CVSS3: 9.1
EPSS Низкий

Описание

Randomly-generated alphanumeric strings contain significantly less entropy than expected. The RandomAlphaNumeric and CryptoRandomAlphaNumeric functions always return strings containing at least one digit from 0 to 9. This significantly reduces the amount of entropy in short strings generated by these functions.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:goutils_project:goutils:*:*:*:*:*:go:*:*
Версия до 1.1.1 (исключая)

EPSS

Процентиль: 68%
0.01319
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-331

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 3 лет назад

Randomly-generated alphanumeric strings contain significantly less entropy than expected. The RandomAlphaNumeric and CryptoRandomAlphaNumeric functions always return strings containing at least one digit from 0 to 9. This significantly reduces the amount of entropy in short strings generated by these functions.

CVSS3: 7
redhat
больше 3 лет назад

Randomly-generated alphanumeric strings contain significantly less entropy than expected. The RandomAlphaNumeric and CryptoRandomAlphaNumeric functions always return strings containing at least one digit from 0 to 9. This significantly reduces the amount of entropy in short strings generated by these functions.

CVSS3: 9.1
msrc
6 месяцев назад

Insufficient randomness in github.com/Masterminds/goutils

CVSS3: 9.1
debian
больше 3 лет назад

Randomly-generated alphanumeric strings contain significantly less ent ...

github
около 5 лет назад

RandomAlphaNumeric and CryptoRandomAlphaNumeric are not as random as they should be

EPSS

Процентиль: 68%
0.01319
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-331