PT-2015-6033 · Type74 · Type74 Ed
Yutaka Sawada
·
Published
2015-08-28
·
Updated
2015-08-31
·
CVE-2015-2987
CVSS v2.0
2.6
Low
| Vector | AV:N/AC:H/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Type74 ED versions prior to 4.0
Description
The issue concerns the misuse of 128-bit ECB encryption for small files, making it easier for attackers to obtain plaintext data via differential cryptanalysis of a file with an original length smaller than 128 bits.
Recommendations
For versions prior to 4.0, consider updating to a version that uses secure encryption methods to mitigate the risk of plaintext data exposure.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Type74 Ed