UbuntuUpdates.org

Package "libcrypt-saltedhash-perl"

Name: libcrypt-saltedhash-perl

Description:

module for handling salted hashes

Latest version: 0.09-3ubuntu0.25.10.1
Release: questing (25.10)
Level: updates
Repository: universe
Homepage: https://metacpan.org/release/Crypt-SaltedHash

Links


Download "libcrypt-saltedhash-perl"


Other versions of "libcrypt-saltedhash-perl" in Questing

Repository Area Version
base universe 0.09-3
security universe 0.09-3ubuntu0.25.10.1

Changelog

Version: 0.09-3ubuntu0.25.10.1 2026-06-11 07:07:41 UTC

  libcrypt-saltedhash-perl (0.09-3ubuntu0.25.10.1) questing-security; urgency=medium

  * SECURITY UPDATE: insecure predictable random number generation
    - debian/patches/CVE-2026-47372.patch: Use Crypt::SysRandom to generate
      the salt in lib/Crypt/SaltedHash.pm.
    - CVE-2026-47372

  * debian/control: Add libcrypt-sysrandom-perl as a build and runtime dep

 -- Shishir Subedi <email address hidden> Wed, 10 Jun 2026 12:38:13 +0545

CVE-2026-47372 Crypt::SaltedHash versions through 0.09 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is



About   -   Send Feedback to @ubuntu_updates