DescriptionVasyl Kaigorodov
2015-03-02 16:43:46 UTC
Common Vulnerabilities and Exposures assigned an identifier CVE-2015-0886 to
the following vulnerability:
Name: CVE-2015-0886
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0886
Assigned: 20150108
Reference: http://jvndb.jvn.jp/jvndb/JVNDB-2015-000033
Integer overflow in the crypt_raw method in the key-stretching
implementation in jBCrypt before 0.4 makes it easier for remote
attackers to determine cleartext values of password hashes via a
brute-force attack against hashes associated with the maximum
exponent.