libxcrypt in SUSE openSUSE 11.0 uses the DES algorithm when the configuration specifies the MD5 algorithm, which makes it easier for attackers to conduct brute-force attacks against hashed passwords.
References
Link Resource
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00008.html Mailing List Vendor Advisory
http://lists.opensuse.org/opensuse-security-announce/2008-08/msg00001.html Mailing List Vendor Advisory
http://secunia.com/advisories/31096 Broken Link Third Party Advisory
http://secunia.com/advisories/31339 Broken Link Third Party Advisory
http://www.securityfocus.com/bid/30301 Broken Link Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/43927 Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2008-07-22T16:00:00

Updated: 2017-08-07T12:57:01

Reserved: 2008-07-16T00:00:00


Link: CVE-2008-3188

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2008-07-22T16:41:00.000

Modified: 2024-02-09T03:19:49.357


Link: CVE-2008-3188

JSON object: View

cve-icon Redhat Information

No data.

CWE