CryptoBuddy Long Passphrase Truncation Weakness
BID:6815
Info
CryptoBuddy Long Passphrase Truncation Weakness
| Bugtraq ID: | 6815 |
| Class: | Design Error |
| CVE: |
CVE-2003-1389 CVE-2003-1389 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 10 2003 12:00AM |
| Updated: | Jul 06 2016 02:06PM |
| Credit: | The discovery of this vulnerability has been credited to [email protected]. |
| Vulnerable: |
Research Triangle Software CryptoBuddy 1.2 Research Triangle Software CryptoBuddy 1.0 |
| Not Vulnerable: | |
Discussion
CryptoBuddy Long Passphrase Truncation Weakness
It has been reported that CryptoBuddy will truncate passphrases over 55 characters in length. This weakness employed by the encryption algorithm of CryptoBuddy may result in a user having a false sense of security.
It has been reported that CryptoBuddy will truncate passphrases over 55 characters in length. This weakness employed by the encryption algorithm of CryptoBuddy may result in a user having a false sense of security.
Solution / Fix
CryptoBuddy Long Passphrase Truncation Weakness
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
CryptoBuddy Long Passphrase Truncation Weakness
References:
References:
- CryptoBuddy (Research Triangle Software)
- RTS CryptoBuddy Multiple Encryption Implementation Vulnerabilities ([email protected])