The built-in rand function is predictable, and unsuitable for cryptography.
Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 08 May 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 08 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Crypt::PasswdMD5 versions through 1.42 for Perl generates insecure random values for salts. The built-in rand function is predictable, and unsuitable for cryptography. | |
| Title | Crypt::PasswdMD5 versions through 1.42 for Perl generates insecure random values for salts | |
| Weaknesses | CWE-338 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CPANSec
Published:
Updated: 2026-05-08T19:30:59.696Z
Reserved: 2026-04-20T08:24:35.812Z
Link: CVE-2026-6659
Updated: 2026-05-08T18:03:26.899Z
Status : Received
Published: 2026-05-08T18:16:34.183
Modified: 2026-05-08T19:16:31.517
Link: CVE-2026-6659
No data.
OpenCVE Enrichment
No data.