CVE-2017-17878

Severity CVSS v4.0:
Pending analysis
Type:
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
Publication date:
27/12/2017
Last modified:
20/04/2025

Description

An issue was discovered in Valve Steam Link build 643. Root passwords longer than 8 characters are truncated because of the default use of DES (aka the CONFIG_FEATURE_DEFAULT_PASSWD_ALGO="des" setting).

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:valvesoftware:steam_link_firmware:*:*:*:*:*:*:*:* 644 (excluding)
cpe:2.3:h:valvesoftware:steam_link:-:*:*:*:*:*:*:*