{"id":"CVE-2012-2742","details":"Revelation 0.4.13-2 and earlier uses only the first 32 characters of a password followed by a sequence of zeros, which reduces the entropy and makes it easier for context-dependent attackers to crack passwords and obtain access to keys via a brute-force attack.","modified":"2026-04-10T03:42:21.946213Z","published":"2012-06-27T22:55:01Z","references":[{"type":"ARTICLE","url":"http://knoxin.blogspot.co.uk/2012/06/revelation-password-manager-considered.html"},{"type":"WEB","url":"http://oss.codepoet.no/revelation/issue/61/file-format-magic-string-version-mismatch"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/06/18/1"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/06/18/3"},{"type":"WEB","url":"http://www.securityfocus.com/bid/54060"},{"type":"WEB","url":"https://bugs.gentoo.org/show_bug.cgi?id=421571"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/76407"}],"schema_version":"1.7.5"}