The Ruby net-ldap gem before 0.11 uses a weak salt when generating SSHA passwords.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2014-0083 | Issue Tracking Patch Third Party Advisory |
https://bugzilla.suse.com/show_bug.cgi?id=CVE-2014-0083 | Issue Tracking Third Party Advisory |
https://github.com/ruby-ldap/ruby-net-ldap/commit/b412ca05f6b430eaa1ce97ac95885b4cf187b04a | Patch |
https://security-tracker.debian.org/tracker/CVE-2014-0083 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2019-11-21T13:57:00
Updated: 2019-12-19T14:27:34
Reserved: 2013-12-03T00:00:00
Link: CVE-2014-0083
JSON object: View
NVD Information
Status : Modified
Published: 2019-11-21T14:15:13.193
Modified: 2020-08-18T15:05:58.063
Link: CVE-2014-0083
JSON object: View
Redhat Information
No data.
CWE