FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-11-19 19:12:13 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
2991178f-cbe8-11ed-956f-7054d21a9e2apy39-Elixir -- weak use of cryptography

Red Hat Security Response Team reports:

Elixir 0.8.0 uses Blowfish in CFB mode without constructing a unique initialization vector (IV), which makes it easier for context-dependent users to obtain sensitive information and decrypt the database.


Discovery 2012-08-26
Entry 2023-03-26
py39-Elixir
<= 0.8.0

CVE-2012-2146
https://osv.dev/vulnerability/PYSEC-2012-13