Crypt::PasswdMD5 versions through 1.42 for Perl generates insecure random values for salts.
The built-in rand function is predictable, and unsuitable for cryptography.
The built-in rand function is predictable, and unsuitable for cryptography.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 08 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Crypt::PasswdMD5 versions through 1.42 for Perl generates insecure random values for salts. The built-in rand function is predictable, and unsuitable for cryptography. | |
| Title | Crypt::PasswdMD5 versions through 1.42 for Perl generates insecure random values for salts | |
| Weaknesses | CWE-338 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CPANSec
Published:
Updated: 2026-05-08T17:17:01.357Z
Reserved: 2026-04-20T08:24:35.812Z
Link: CVE-2026-6659
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses