Beveiligingsadvies

CVE-2026-6656

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-20 07:01:45
Laatst bijgewerkt 2026-07-20 18:38:21
Toegewezen door CPANSec
CVSS-score 7.5
Status PUBLISHED

Beschrijving

Crypt::Password versions through 0.28 for Perl are susceptible to timing attacks. The check_password method uses the built-in eq operator. This allows discrepancies in timing to be used to guess the underlying hash.