Updated makepasswd fix insecure default length of password By default, makepasswd generates password with a length between 6 to 8 characters (48 to 64bits). This update raise the default to 16 characters (128 bits). . Publication date: 13 Jan 2020 URL: https://advisories.mageia.org/MGASA-2020-0038.html Mageia Advisory: MGASA-2020-0038 - Updated makepasswd fix insecure default length of password Type: security Affected Mageia releases: 7 CVE: CVE-2010-2247 Description: Updated makepasswd fix insecure default length of password By default, makepasswd generates password with a length between 6 to 8 characters (48 to 64bits). This update raise the default to 16 characters (128 bits). The length can be changed at runtime with the -l option. References: - 26060 – makepasswd new security issue CVE-2010-2247 - https://bugzilla.redhat.com/show_bug.cgi?id=1771883 - CVE -CVE-2010-2247 SRPMS: - 7/core/makepasswd-0.5.4-2.1.mga7 . Mageia Advisory MGASA-2020-0039 focuses on enhancing encryption standards in openSSL, modifying default algorithms to improve data integrity.. makepasswd, password policy, security update, mageia advisory, password strength. . Severity: Important. LinuxSecurity.com Team
Fixes bugzilla 1126076. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-a5b60d0c2b 2020-01-12 01:40:13.411211 --------------------------------------------------------------------------------Name : makepasswd Product : Fedora 31 Version : 0.5.3 Release : 18.fc31 URL : Summary : Generates (pseudo-)random passwords of a desired length Description : Makepasswd generates (pseudo-)random passwords of a desired length. --------------------------------------------------------------------------------Update Information: Fixes bugzilla 1126076 --------------------------------------------------------------------------------ChangeLog: * Fri Jan 3 2020 Johan Swensson - 0.5.3-18 - Fixes bugzilla 1126076 --------------------------------------------------------------------------------References: [ 1 ] Bug #1771883 - CVE-2010-2247 makepasswd: default settin generate insecure passwords [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1771883 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-a5b60d0c2b' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Fixes bugzilla 1126076. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-1db19e75db 2020-01-12 01:14:24.201906 --------------------------------------------------------------------------------Name : makepasswd Product : Fedora 30 Version : 0.5.3 Release : 18.fc30 URL : Summary : Generates (pseudo-)random passwords of a desired length Description : Makepasswd generates (pseudo-)random passwords of a desired length. --------------------------------------------------------------------------------Update Information: Fixes bugzilla 1126076 --------------------------------------------------------------------------------ChangeLog: * Fri Jan 3 2020 Johan Swensson - 0.5.3-18 - Fixes bugzilla 1126076 * Thu Jul 25 2019 Fedora Release Engineering - 0.5.3-17 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1771883 - CVE-2010-2247 makepasswd: default settin generate insecure passwords [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1771883 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-1db19e75db' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.