Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-9641

Опубликовано: 12 июн. 2026
Источник: nvd
CVSS3: 5.3
EPSS Низкий

Описание

Crypt::PBKDF2 versions before 0.261630 for Perl have a weak default algorithm and number of iterations.

The default algorithm is HMAC-SHA1, which should only be used for legacy systems.

These versions default to using 1000 iterations.

Depending on the chosen algorithm, 220,000 to 1,400,000 iterations should be used.

EPSS

Процентиль: 13%
0.00226
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-916

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 2 месяцев назад

Crypt::PBKDF2 versions before 0.261630 for Perl have a weak default algorithm and number of iterations. The default algorithm is HMAC-SHA1, which should only be used for legacy systems. These versions default to using 1000 iterations. Depending on the chosen algorithm, 220,000 to 1,400,000 iterations should be used.

CVSS3: 5.3
debian
около 2 месяцев назад

Crypt::PBKDF2 versions before 0.261630 for Perl have a weak default al ...

CVSS3: 5.3
github
около 2 месяцев назад

Crypt::PBKDF2 versions before 0.261630 for Perl have a weak default algorithm and number of iterations. The default algorithm is HMAC-SHA1, which should only be used for legacy systems. These versions default to using 1000 iterations. Depending on the chosen algorithm, 220,000 to 1,400,000 iterations should be used.

EPSS

Процентиль: 13%
0.00226
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-916