Publication date: 13 Jan 2020
URL: Mageia Advisory: MGASA-2020-0038 - Updated makepasswd fix insecure default length of password
Type: security
Affected Mageia releases: 7
CVE: CVE-2010-2247

Description:
Updated makepasswd fix insecure default length of password

By default, makepasswd generates password with a length between 6 to 8
characters (48 to 64bits). This update raise the default to 16 characters
(128 bits).

The length can be changed at runtime with the -l option.

References:
- 26060 – makepasswd new security issue CVE-2010-2247
- https://bugzilla.redhat.com/show_bug.cgi?id=1771883
- CVE -CVE-2010-2247

SRPMS:
- 7/core/makepasswd-0.5.4-2.1.mga7

Mageia: MGASA-2020-0038: Updated makepasswd fix insecure default length of password

Updated makepasswd fix insecure default length of password By default, makepasswd generates password with a length between 6 to 8 characters (48 to 64bits)

Summary

Updated makepasswd fix insecure default length of password By default, makepasswd generates password with a length between 6 to 8 characters (48 to 64bits). This update raise the default to 16 characters (128 bits).

References

Resolution

SRPMS

Severity

Publication date: 13 Jan 2020
URL: //advisories.mageia.org/MGASA-2020-0038.html">Mageia Advisory: MGASA-2020-0038 - Updated makepasswd fix insecure default length of password
Type: security
Affected Mageia releases: 7
CVE: CVE-2010-2247

Description:
Updated makepasswd fix insecure default length of password

By default, makepasswd generates password with a length between 6 to 8
characters (48 to 64bits). This update raise the default to 16 characters
(128 bits).

Related News