Revelation 0.4.13-2 and earlier uses only the first 32 characters of a password followed by a sequence of zeros, which reduces the entropy and makes it easier for context-dependent attackers to crack passwords and obtain access to keys via a brute-force attack.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-06-27 15:55
Updated : 2017-08-28 18:31
NVD link : CVE-2012-2742
Mitre link : CVE-2012-2742
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
mikel_olasagasti
- revelation