CVE-2001-1467

mkpasswd in expect 5.2.8, as used by Red Hat Linux 6.2 through 7.0, seeds its random number generator with its process ID, which limits the space of possible seeds and makes it easier for attackers to conduct brute force password attacks.
Configurations

Configuration 1 (hide)

cpe:2.3:a:don_libes:expect:5.2.8:*:*:*:*:*:*:*

History

No history.

Information

Published : 2001-04-11 04:00

Updated : 2024-02-04 16:31


NVD link : CVE-2001-1467

Mitre link : CVE-2001-1467

CVE.ORG link : CVE-2001-1467


JSON object : View

Products Affected

don_libes

  • expect