CVE-2018-25107

Publication date 29 December 2024

Last updated 1 January 2025


Ubuntu priority

The Crypt::Random::Source package before 0.13 for Perl has a fallback to the built-in rand() function, which is not a secure source of random bits.

Status

Package Ubuntu Release Status
libcrypt-random-source-perl 24.10 oracular
Not affected
24.04 LTS noble
Not affected
22.04 LTS jammy
Not affected
20.04 LTS focal
Not affected
18.04 LTS bionic
Needs evaluation
16.04 LTS xenial
Needs evaluation