Insecure generation of random numbers In libwww-oauth-perl
Description
WWW::OAuth 1.000 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 12 | - | ||
debian 13 | 1.001-1 | ||
debian 14 | 1.001-1 | ||
debian 11 | - |
Aliases
1. 2. 3. 4. 5.