Описание
Crypt::Password versions through 0.28 for Perl generate insecure random values for salts.
These versions use the built-in rand function, which is predictable and unsuitable for cryptography.
EPSS
Процентиль: 29%
0.00357
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-338
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 1 месяца назад
Crypt::Password versions through 0.28 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is predictable and unsuitable for cryptography.
CVSS3: 9.8
debian
около 1 месяца назад
Crypt::Password versions through 0.28 for Perl generate insecure rando ...
CVSS3: 9.8
github
около 1 месяца назад
Crypt::Password versions through 0.28 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is predictable and unsuitable for cryptography.
EPSS
Процентиль: 29%
0.00357
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-338