CVE Vulnerabilities

CVE-2006-0898

Published: Feb 25, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Crypt::CBC Perl module 2.16 and earlier, when running in RandomIV mode, uses an initialization vector (IV) of 8 bytes, which results in weaker encryption when used with a cipher that requires a larger block size than 8 bytes, such as Rijndael.

Affected Software

Name Vendor Start Version End Version
Crypt_cbc Lincoln_d._stein * 2.16 (including)
Crypt_cbc Lincoln_d._stein 1.00 (including) 1.00 (including)
Crypt_cbc Lincoln_d._stein 1.10 (including) 1.10 (including)
Crypt_cbc Lincoln_d._stein 1.20 (including) 1.20 (including)
Crypt_cbc Lincoln_d._stein 1.21 (including) 1.21 (including)
Crypt_cbc Lincoln_d._stein 1.22 (including) 1.22 (including)
Crypt_cbc Lincoln_d._stein 1.24 (including) 1.24 (including)
Crypt_cbc Lincoln_d._stein 1.25 (including) 1.25 (including)
Crypt_cbc Lincoln_d._stein 2.00 (including) 2.00 (including)
Crypt_cbc Lincoln_d._stein 2.01 (including) 2.01 (including)
Crypt_cbc Lincoln_d._stein 2.02 (including) 2.02 (including)
Crypt_cbc Lincoln_d._stein 2.03 (including) 2.03 (including)
Crypt_cbc Lincoln_d._stein 2.04 (including) 2.04 (including)
Crypt_cbc Lincoln_d._stein 2.05 (including) 2.05 (including)
Crypt_cbc Lincoln_d._stein 2.07 (including) 2.07 (including)
Crypt_cbc Lincoln_d._stein 2.08 (including) 2.08 (including)
Crypt_cbc Lincoln_d._stein 2.09 (including) 2.09 (including)
Crypt_cbc Lincoln_d._stein 2.10 (including) 2.10 (including)
Crypt_cbc Lincoln_d._stein 2.11 (including) 2.11 (including)
Crypt_cbc Lincoln_d._stein 2.12 (including) 2.12 (including)
Crypt_cbc Lincoln_d._stein 2.13 (including) 2.13 (including)
Crypt_cbc Lincoln_d._stein 2.14 (including) 2.14 (including)
Crypt_cbc Lincoln_d._stein 2.15 (including) 2.15 (including)
Red Hat Network Satellite Server v 4.2 RedHat jabberd-0:2.0s10-3.38.rhn *
Red Hat Network Satellite Server v 4.2 RedHat java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4 *
Red Hat Network Satellite Server v 4.2 RedHat jfreechart-0:0.9.20-3.rhn *
Red Hat Network Satellite Server v 4.2 RedHat openmotif21-0:2.1.30-11.RHEL4.6 *
Red Hat Network Satellite Server v 4.2 RedHat perl-Crypt-CBC-0:2.24-1.el4 *
Red Hat Network Satellite Server v 4.2 RedHat rhn-apache-0:1.3.27-36.rhn.rhel4 *
Red Hat Network Satellite Server v 4.2 RedHat rhn-modjk-0:1.2.23-2rhn.rhel4 *
Red Hat Network Satellite Server v 4.2 RedHat rhn-modperl-0:1.29-16.rhel4 *
Red Hat Network Satellite Server v 4.2 RedHat rhn-modssl-0:2.8.12-8.rhn.10.rhel4 *
Red Hat Network Satellite Server v 4.2 RedHat tomcat5-0:5.0.30-0jpp_10rh *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat jabberd-0:2.0s10-3.37.rhn *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el3 *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat jfreechart-0:0.9.20-3.rhn *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat openmotif21-0:2.1.30-9.RHEL3.8 *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat perl-Crypt-CBC-0:2.24-1.el3 *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat rhn-apache-0:1.3.27-36.rhn.rhel3 *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat rhn-modjk-0:1.2.23-2rhn.rhel3 *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat rhn-modperl-0:1.29-16.rhel3 *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat rhn-modssl-0:2.8.12-8.rhn.10.rhel3 *
Red Hat Network Satellite Server v 4.2 (RHEL3) RedHat tomcat5-0:5.0.30-0jpp_10rh *
Red Hat Network Satellite Server v 5.0 RedHat jabberd-0:2.0s10-3.38.rhn *
Red Hat Network Satellite Server v 5.0 RedHat java-1.4.2-ibm-0:1.4.2.10-1jpp.2.el4 *
Red Hat Network Satellite Server v 5.0 RedHat jfreechart-0:0.9.20-3.rhn *
Red Hat Network Satellite Server v 5.0 RedHat openmotif21-0:2.1.30-11.RHEL4.6 *
Red Hat Network Satellite Server v 5.0 RedHat perl-Crypt-CBC-0:2.24-1.el4 *
Red Hat Network Satellite Server v 5.0 RedHat rhn-apache-0:1.3.27-36.rhn.rhel4 *
Red Hat Network Satellite Server v 5.0 RedHat rhn-modjk-0:1.2.23-2rhn.rhel4 *
Red Hat Network Satellite Server v 5.0 RedHat rhn-modperl-0:1.29-16.rhel4 *
Red Hat Network Satellite Server v 5.0 RedHat rhn-modssl-0:2.8.12-8.rhn.10.rhel4 *
Red Hat Network Satellite Server v 5.0 RedHat tomcat5-0:5.0.30-0jpp_10rh *
Red Hat Network Satellite Server v 5.1 RedHat jfreechart-0:0.9.20-3.rhn *
Red Hat Network Satellite Server v 5.1 RedHat mod_perl-0:2.0.2-12.el4 *
Red Hat Network Satellite Server v 5.1 RedHat perl-Crypt-CBC-0:2.24-1.el4 *
Red Hat Network Satellite Server v 5.1 RedHat rhn-web-0:5.1.1-7 *
Red Hat Network Satellite Server v 5.1 RedHat tomcat5-0:5.0.30-0jpp_10rh *
Libcrypt-cbc-perl Ubuntu dapper *
Libcrypt-cbc-perl Ubuntu devel *
Libcrypt-cbc-perl Ubuntu edgy *
Libcrypt-cbc-perl Ubuntu feisty *
Libcrypt-cbc-perl Ubuntu gutsy *

References