CVE-2000-0093

CVSS 2.0 Score 10 of 10 (high)

Details

Published Jan 21, 2000
Updated: Nov 20, 2024

Summary

CVE-2000-0093 refers to a vulnerability in Red Hat's password encryption system. Instead of using MD5 encryption for passwords during initial setup, Red Hat utilizes the DES algorithm with crypt(). This weakness in encryption can potentially make passwords more susceptible to brute-force attacks and other forms of decryption. It is important to note that this issue only affects the initial password and not subsequent passwords, which are encrypted using MD5. System administrators are advised to update their Red Hat installations with the latest security patches to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Red Hat Enterprise Linux

Affected Vendors

  • Red Hat