CVE-2025-40918
Last modified
CVE-2025-40918 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. Authen::SASL::Perl::DIGEST_MD5 versions 2.04 through 2.1800 for Perl generates the cnonce insecurely. The cnonce (client nonce) is generated from an MD5 hash of the PID, the epoch time and the built-in rand function. The PID will come from a small set of numbers, and the epoch time may be guessed, if it is not leaked from the HTTP Date header. EPSS estimates a 0.39% chance of exploitation in the next 30 days.
Description
Authen::SASL::Perl::DIGEST_MD5 versions 2.04 through 2.1800 for Perl generates the cnonce insecurely. The cnonce (client nonce) is generated from an MD5 hash of the PID, the epoch time and the built-in rand function. The PID will come from a small set of numbers, and the epoch time may be guessed, if it is not leaked from the HTTP Date header. The built-in rand function is unsuitable for cryptographic usage. According to RFC 2831, The cnonce-value is an opaque quoted string value provided by the client and used by both client and server to avoid chosen plaintext attacks, and to provide mutual authentication. The security of the implementation depends on a good choice. It is RECOMMENDED that it contain at least 64 bits of entropy.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-40918?
How severe is CVE-2025-40918?
How do I fix CVE-2025-40918?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-40911Net::CIDR::Set versions 0.10 through 0.13 for Perl does not …6.5
- CVE-2025-40912CryptX for Perl before version 0.065 contains a dependency t…9.8
- CVE-2025-40913Net::Dropbear versions through 0.16 for Perl contains a depe…6.5
- CVE-2025-40914Perl CryptX before version 0.087 contains a dependency that …9.8
- CVE-2025-40915Mojolicious::Plugin::CSRF 1.03 for Perl uses a weak random n…7
- CVE-2025-40916Mojolicious::Plugin::CaptchaPNG version 1.05 for Perl uses a…9.1
- CVE-2025-40919Authen::DigestMD5 versions 0.01 through 0.02 for Perl genera…6.5
- CVE-2025-4092Memory safety bugs present in Firefox 137 and Thunderbird 13…6.5
- CVE-2025-40920Catalyst::Authentication::Credential::HTTP versions 1.018 an…8.6
- CVE-2025-40923Plack-Middleware-Session before version 0.35 for Perl genera…7.3
- CVE-2025-40924Catalyst::Plugin::Session before version 0.44 for Perl gener…6.5
- CVE-2025-40925Starch versions 0.14 and earlier generate session ids insecu…9.1
Are you affected by CVE-2025-40918?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
