The Net::EasyTCP package before 0.15 for Perl always uses...
Moderate severity
Unreviewed
Published
Jan 2, 2025
to the GitHub Advisory Database
•
Updated Jan 2, 2025
Description
Published by the National Vulnerability Database
Jan 2, 2025
Published to the GitHub Advisory Database
Jan 2, 2025
Last updated
Jan 2, 2025
The Net::EasyTCP package before 0.15 for Perl always uses Perl's builtin rand(), which is not a strong random number generator, for cryptographic keys.
References