CVE-2006-0898 - CVE House
Back to Database
Status published Low CVE-2006-0898

Crypt::CBC Perl module 2.16 and earlier, when running in RandomIV...

Vulnerability Description

Crypt::CBC Perl module 2.16 and earlier, when running in RandomIV mode, uses an initialization vector (IV) of 8 bytes, which results in weaker encryption when used with a cipher that requires a larger block size than 8 bytes, such as Rijndael.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-0898

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

lincoln d. stein

View all reports →

Affected Software

crypt cbc
Vulnerable Versions:
0, 1.00, 1.10, 1.20, 1.21, 1.22, 1.24, 1.25, 2.00, 2.01, 2.02, 2.03, 2.04, 2.05, 2.07, 2.08, 2.09, 2.10, 2.11, 2.12, 2.13, 2.14, 2.15

Timeline

Official Publish: February 25th, 2006
Last Modified: August 7th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.