Revelation 0.4.13-2 and earlier uses only the first 32 characters of a password followed by a sequence of zeros, which reduces the entropy and makes it easier for context-dependent attackers to crack passwords and obtain access to keys via a brute-force attack.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2012-06-27 22:55
Updated : 2017-08-29 01:31
NVD link : CVE-2012-2742
Mitre link : CVE-2012-2742
CVE.ORG link : CVE-2012-2742
JSON object : View
Products Affected
mikel_olasagasti
- revelation
CWE
CWE-255
Credentials Management Errors