Crypt::CBC Perl module 2.16 and earlier, when running in RandomIV mode, uses an initialization vector (IV) of 8 bytes, which results in weaker encryption when used with a cipher that requires a larger block size than 8 bytes, such as Rijndael.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation28 reference(s) from NVD