Novell Home

CVE-2008-3188

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

CVE-2008-3188 at MITRE

Description

libxcrypt in SUSE openSUSE 11.0 uses the DES algorithm when the configuration specifies the MD5 algorithm, which makes it easier for attackers to conduct brute-force attacks against hashed passwords.
Novell Bugzilla entry: 408719

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
openSUSE 11.0
  • libxcrypt >= 3.0-14.2
  • libxcrypt-32bit >= 3.0-14.2
  • libxcrypt-64bit >= 3.0-14.2
  • libxcrypt-devel >= 3.0-14.2
SAT Patch Nr: 109

Novell® Making IT Work As One

© 2010 Novell