CVE-2001-1467

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/04/2001
Last modified:
03/04/2025

Description

mkpasswd in expect 5.2.8, as used by Red Hat Linux 6.2 through 7.0, seeds its random number generator with its process ID, which limits the space of possible seeds and makes it easier for attackers to conduct brute force password attacks.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:don_libes:expect:5.2.8:*:*:*:*:*:*:*