CVE-2022-29930
12.05.2022, 09:15
SHA1 implementation in JetBrains Ktor Native 2.0.0 was returning the same value. The issue was fixed in Ktor version 2.0.1.Enginsight
Vendor | Product | Version |
---|---|---|
jetbrains | ktor | 2.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-342 - Predictable Exact Value from Previous ValuesAn exact value or random number can be precisely predicted by observing previous values.
- CWE-330 - Use of Insufficiently Random ValuesThe software uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.