Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-4238

Опубликовано: 27 дек. 2022
Источник: nvd
CVSS3: 9.1
EPSS Низкий

Описание

Randomly-generated alphanumeric strings contain significantly less entropy than expected. The RandomAlphaNumeric and CryptoRandomAlphaNumeric functions always return strings containing at least one digit from 0 to 9. This significantly reduces the amount of entropy in short strings generated by these functions.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:goutils_project:goutils:*:*:*:*:*:go:*:*
Версия до 1.1.1 (исключая)

EPSS

Процентиль: 57%
0.00348
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-331

Связанные уязвимости

CVSS3: 9.1
ubuntu
около 3 лет назад

Randomly-generated alphanumeric strings contain significantly less entropy than expected. The RandomAlphaNumeric and CryptoRandomAlphaNumeric functions always return strings containing at least one digit from 0 to 9. This significantly reduces the amount of entropy in short strings generated by these functions.

CVSS3: 7
redhat
около 3 лет назад

Randomly-generated alphanumeric strings contain significantly less entropy than expected. The RandomAlphaNumeric and CryptoRandomAlphaNumeric functions always return strings containing at least one digit from 0 to 9. This significantly reduces the amount of entropy in short strings generated by these functions.

CVSS3: 9.1
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 9.1
debian
около 3 лет назад

Randomly-generated alphanumeric strings contain significantly less ent ...

github
больше 4 лет назад

RandomAlphaNumeric and CryptoRandomAlphaNumeric are not as random as they should be

EPSS

Процентиль: 57%
0.00348
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-331