Elixir 0.8.0 uses Blowfish in CFB mode without constructing a unique initialization vector (IV), which makes it easier for context-dependent users to obtain sensitive information and decrypt the database.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "python-elixir", "binary_version": "0.7.1-4build0.14.04.1" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-2146.json"
{ "availability": "No subscription required", "binaries": [ { "binary_name": "python-elixir", "binary_version": "0.7.1-4build0.16.04.1" } ] }