Crypt::DSA versions before 1.20 for Perl generate seeds using rand.
Seeds were generated using Perl's built-in rand function, which is predictable and unsuitable for security usage.
Seeds were generated using Perl's built-in rand function, which is predictable and unsuitable for security usage.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Upgrade to version 1.20 or later.
Workaround
No workaround given by the vendor.
References
History
Sat, 16 May 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 15 May 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Crypt::DSA versions before 1.20 for Perl generate seeds using rand. Seeds were generated using Perl's built-in rand function, which is predictable and unsuitable for security usage. | |
| Title | Crypt::DSA versions before 1.20 for Perl generate seeds using rand | |
| Weaknesses | CWE-331 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CPANSec
Published:
Updated: 2026-05-16T00:31:19.834Z
Reserved: 2026-05-15T17:20:11.254Z
Link: CVE-2026-8700
No data.
Status : Received
Published: 2026-05-15T22:16:57.020
Modified: 2026-05-16T01:16:17.443
Link: CVE-2026-8700
No data.
OpenCVE Enrichment
Updated: 2026-05-16T00:00:12Z
Weaknesses