package release.debian.org
tags 1139905 = bookworm pending
thanks

Hi,

The upload referenced by this bug report has been flagged for acceptance into 
the proposed-updates queue for Debian bookworm.

Thanks for your contribution!

Upload details
==============

Package: libcrypt-pbkdf2-perl
Version: 0.261630-1~deb13u1~deb12u1

Explanation: change default hash algorithm to HMAC-SHA256 and default 
iterations to 600,000 [CVE-2026-9641]; generate salts using Crypt::URandom 
[CVE-2026-9638]; use a constant-time comparison in `validate` to avoid timing 
attacks [CVE-2017-20240]

Reply via email to