CVE Vulnerabilities

CVE-2006-0898

Published: Feb 25, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Crypt::CBC Perl module 2.16 and earlier, when running in RandomIV mode, uses an initialization vector (IV) of 8 bytes, which results in weaker encryption when used with a cipher that requires a larger block size than 8 bytes, such as Rijndael.

Affected Software

Name Vendor Start Version End Version
Crypt_cbc Lincoln_d._stein 2.13 2.13
Crypt_cbc Lincoln_d._stein 2.00 2.00
Crypt_cbc Lincoln_d._stein 1.24 1.24
Crypt_cbc Lincoln_d._stein 2.09 2.09
Crypt_cbc Lincoln_d._stein 2.05 2.05
Crypt_cbc Lincoln_d._stein 2.10 2.10
Crypt_cbc Lincoln_d._stein 2.04 2.04
Crypt_cbc Lincoln_d._stein 1.21 1.21
Crypt_cbc Lincoln_d._stein 2.12 2.12
Crypt_cbc Lincoln_d._stein 2.11 2.11
Crypt_cbc Lincoln_d._stein 2.15 2.15
Crypt_cbc Lincoln_d._stein 2.02 2.02
Crypt_cbc Lincoln_d._stein 2.08 2.08
Crypt_cbc Lincoln_d._stein 2.03 2.03
Crypt_cbc Lincoln_d._stein 1.25 1.25
Crypt_cbc Lincoln_d._stein 1.20 1.20
Crypt_cbc Lincoln_d._stein 1.22 1.22
Crypt_cbc Lincoln_d._stein 2.14 2.14
Crypt_cbc Lincoln_d._stein 1.10 1.10
Crypt_cbc Lincoln_d._stein 2.07 2.07
Crypt_cbc Lincoln_d._stein 1.00 1.00
Crypt_cbc Lincoln_d._stein 2.01 2.01
Crypt_cbc Lincoln_d._stein * 2.16

References