Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Mageia 9 perl-DBIx-Class-EncodedColumn Notable Password Salting Issues

mageia
Calendar Grey June 6, 2026
Dist Mageia Esm H88
Mageia 9 security advisory on perl-DBIx-Class-EncodedColumn, critical update for password hash security issues.
Security update

Summary

Description: The updated perl-DBIx-Class-EncodedColumn and new perl-Crypt-URandom-Token packages fix security issues: DBIx::Class::EncodedColumn until 0.00032 for Perl uses insecure rand() function for salting password hashes in Digest.pm (CVE-2025-27551) DBIx::Class::EncodedColumn until 0.00032 for Perl uses insecure rand() function for salting password hashes in Crypt/Eksblowfish/Bcrypt.pm (CVE-2025-27552)

References

- https://bugs.mageia.org/show_bug.cgi?id=34215

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PZO6ZQ5X5UGT2U2IHHPDXAJUDE27HTUX/

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CTXKJZJLOFULT3WQ46ITSLDFTLG4YKJ2/

- https://www.cve.org/CVERecord?id=CVE-2025-27551

- https://www.cve.org/CVERecord?id=CVE-2025-27552

Resolution


Warning: Undefined array key "block" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3820754_e054056aed0948774f0d9dcb331a22bc on line 17

Warning: Undefined array key "block" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3820754_e054056aed0948774f0d9dcb331a22bc on line 21

Warning: foreach() argument must be of type array|object, null given in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/3820754_e054056aed0948774f0d9dcb331a22bc on line 21

SRPMS

- 9/core/perl-DBIx-Class-EncodedColumn-0.110.0-1.mga9

- 9/core/perl-Crypt-URandom-Token-0.005-1.mga9

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 06 Jun 2026 
URL: https://advisories.mageia.org/MGASA-2026-0176.html
Type: security
CVE: CVE-2025-27551, CVE-2025-27552

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here