CVE-2026-11702
Gravedad CVSS v3.1:
ALTA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
26/06/2026
Última modificación:
01/07/2026
Descripción
*** Pendiente de traducción *** Bytes::Random::Secure::Tiny versions through 1.011 for Perl share internal state across forked processes.<br />
<br />
When an object is initialised before forking, then the internal state for the PRNG is shared across processes and identical random streams will be produced.<br />
<br />
Secrets generated in multiprocess applications are predictable across processes.
Impacto
Puntuación base 3.x
7.50
Gravedad 3.x
ALTA
Referencias a soluciones, herramientas e información
- https://github.com/daoswald/Bytes-Random-Secure-Tiny/issues/6
- https://github.com/daoswald/Bytes-Random-Secure-Tiny/pull/7
- https://security.metacpan.org/patches/B/Bytes-Random-Secure-Tiny/1.011/CVE-2026-11702-r1.patch
- https://www.cve.org/CVERecord?id=CVE-2026-11625
- https://www.cve.org/CVERecord?id=CVE-2026-41564



