CVE-2012-2743

Revelation 0.4.13-2 and earlier does not iterate through SHA hashing algorithms for AES encryption, which makes it easier for context-dependent attackers to guess passwords via a brute force attack.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mikel_olasagasti:revelation:*:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.1.0:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.1.1:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.2.0:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.2.1:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.3.0:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.3.2:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.3.3:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.3.4:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.0:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.2:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.3:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.4:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.5:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.6:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.7:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.8:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.9:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.10:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.11:*:*:*:*:*:*:*
cpe:2.3:a:mikel_olasagasti:revelation:0.4.12:*:*:*:*:*:*:*

History

21 Nov 2024, 01:39

Type Values Removed Values Added
References () http://knoxin.blogspot.co.uk/2012/06/revelation-password-manager-considered.html - () http://knoxin.blogspot.co.uk/2012/06/revelation-password-manager-considered.html -
References () http://oss.codepoet.no/revelation/issue/61/file-format-magic-string-version-mismatch - () http://oss.codepoet.no/revelation/issue/61/file-format-magic-string-version-mismatch -
References () http://www.openwall.com/lists/oss-security/2012/06/18/1 - () http://www.openwall.com/lists/oss-security/2012/06/18/1 -
References () http://www.openwall.com/lists/oss-security/2012/06/18/3 - () http://www.openwall.com/lists/oss-security/2012/06/18/3 -
References () http://www.securityfocus.com/bid/54060 - () http://www.securityfocus.com/bid/54060 -
References () https://bugs.gentoo.org/show_bug.cgi?id=421571 - () https://bugs.gentoo.org/show_bug.cgi?id=421571 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/76408 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/76408 -

Information

Published : 2012-06-27 22:55

Updated : 2024-11-21 01:39


NVD link : CVE-2012-2743

Mitre link : CVE-2012-2743

CVE.ORG link : CVE-2012-2743


JSON object : View

Products Affected

mikel_olasagasti

  • revelation
CWE
CWE-255

Credentials Management Errors