Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-41564

CryptX versions before 0.088 for Perl do not reseed the Crypt::PK PRNG state after forking. The Crypt::PK::RSA, Crypt::PK::DSA, Crypt::PK::DH, Crypt::PK::ECC, Crypt::PK::Ed25519 and Crypt::PK::X25519 modules seed a per-object PRNG state in their constructors and reuse it without fork detection. A Crypt::PK::* object created before `fork()` shares byte-identical PRNG state with every child process, and any randomized operation they perform can produce identical output, including key generation. Two ECDSA or DSA signatures from different processes are enough to recover the signing private key through nonce-reuse key recovery. This affects preforking services such as the Starman web server, where a Crypt::PK::* object loaded at startup is inherited by every worker process.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 32.9%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2026-41564
  • Dcit » Cryptx » Version: 0.018
    cpe:2.3:a:dcit:cryptx:0.018
  • Dcit » Cryptx » Version: 0.019
    cpe:2.3:a:dcit:cryptx:0.019
  • Dcit » Cryptx » Version: 0.020
    cpe:2.3:a:dcit:cryptx:0.020
  • Dcit » Cryptx » Version: 0.021
    cpe:2.3:a:dcit:cryptx:0.021
  • Dcit » Cryptx » Version: 0.022
    cpe:2.3:a:dcit:cryptx:0.022
  • Dcit » Cryptx » Version: 0.023
    cpe:2.3:a:dcit:cryptx:0.023
  • Dcit » Cryptx » Version: 0.024
    cpe:2.3:a:dcit:cryptx:0.024
  • Dcit » Cryptx » Version: 0.025
    cpe:2.3:a:dcit:cryptx:0.025
  • Dcit » Cryptx » Version: 0.026
    cpe:2.3:a:dcit:cryptx:0.026
  • Dcit » Cryptx » Version: 0.029
    cpe:2.3:a:dcit:cryptx:0.029
  • Dcit » Cryptx » Version: 0.030
    cpe:2.3:a:dcit:cryptx:0.030
  • Dcit » Cryptx » Version: 0.031
    cpe:2.3:a:dcit:cryptx:0.031
  • Dcit » Cryptx » Version: 0.032
    cpe:2.3:a:dcit:cryptx:0.032
  • Dcit » Cryptx » Version: 0.033
    cpe:2.3:a:dcit:cryptx:0.033
  • Dcit » Cryptx » Version: 0.034
    cpe:2.3:a:dcit:cryptx:0.034
  • Dcit » Cryptx » Version: 0.035
    cpe:2.3:a:dcit:cryptx:0.035
  • Dcit » Cryptx » Version: 0.036
    cpe:2.3:a:dcit:cryptx:0.036
  • Dcit » Cryptx » Version: 0.037
    cpe:2.3:a:dcit:cryptx:0.037
  • Dcit » Cryptx » Version: 0.038
    cpe:2.3:a:dcit:cryptx:0.038
  • Dcit » Cryptx » Version: 0.039
    cpe:2.3:a:dcit:cryptx:0.039
  • Dcit » Cryptx » Version: 0.040
    cpe:2.3:a:dcit:cryptx:0.040
  • Dcit » Cryptx » Version: 0.041
    cpe:2.3:a:dcit:cryptx:0.041
  • Dcit » Cryptx » Version: 0.042
    cpe:2.3:a:dcit:cryptx:0.042
  • Dcit » Cryptx » Version: 0.043
    cpe:2.3:a:dcit:cryptx:0.043
  • Dcit » Cryptx » Version: 0.044
    cpe:2.3:a:dcit:cryptx:0.044
  • Dcit » Cryptx » Version: 0.045
    cpe:2.3:a:dcit:cryptx:0.045
  • Dcit » Cryptx » Version: 0.046
    cpe:2.3:a:dcit:cryptx:0.046
  • Dcit » Cryptx » Version: 0.047
    cpe:2.3:a:dcit:cryptx:0.047
  • Dcit » Cryptx » Version: 0.048
    cpe:2.3:a:dcit:cryptx:0.048
  • Dcit » Cryptx » Version: 0.049
    cpe:2.3:a:dcit:cryptx:0.049
  • Dcit » Cryptx » Version: 0.050
    cpe:2.3:a:dcit:cryptx:0.050
  • Dcit » Cryptx » Version: 0.051
    cpe:2.3:a:dcit:cryptx:0.051
  • Dcit » Cryptx » Version: 0.052
    cpe:2.3:a:dcit:cryptx:0.052
  • Dcit » Cryptx » Version: 0.053
    cpe:2.3:a:dcit:cryptx:0.053
  • Dcit » Cryptx » Version: 0.054
    cpe:2.3:a:dcit:cryptx:0.054
  • Dcit » Cryptx » Version: 0.055
    cpe:2.3:a:dcit:cryptx:0.055
  • Dcit » Cryptx » Version: 0.056
    cpe:2.3:a:dcit:cryptx:0.056
  • Dcit » Cryptx » Version: 0.057
    cpe:2.3:a:dcit:cryptx:0.057
  • Dcit » Cryptx » Version: 0.058
    cpe:2.3:a:dcit:cryptx:0.058
  • Dcit » Cryptx » Version: 0.059
    cpe:2.3:a:dcit:cryptx:0.059
  • Dcit » Cryptx » Version: 0.060
    cpe:2.3:a:dcit:cryptx:0.060
  • Dcit » Cryptx » Version: 0.061
    cpe:2.3:a:dcit:cryptx:0.061
  • Dcit » Cryptx » Version: 0.062
    cpe:2.3:a:dcit:cryptx:0.062
  • Dcit » Cryptx » Version: 0.063
    cpe:2.3:a:dcit:cryptx:0.063
  • Dcit » Cryptx » Version: 0.064
    cpe:2.3:a:dcit:cryptx:0.064
  • Dcit » Cryptx » Version: 0.065
    cpe:2.3:a:dcit:cryptx:0.065
  • Dcit » Cryptx » Version: 0.066
    cpe:2.3:a:dcit:cryptx:0.066
  • Dcit » Cryptx » Version: 0.067
    cpe:2.3:a:dcit:cryptx:0.067
  • Dcit » Cryptx » Version: 0.068
    cpe:2.3:a:dcit:cryptx:0.068
  • Dcit » Cryptx » Version: 0.069
    cpe:2.3:a:dcit:cryptx:0.069
  • Dcit » Cryptx » Version: 0.070
    cpe:2.3:a:dcit:cryptx:0.070
  • Dcit » Cryptx » Version: 0.071
    cpe:2.3:a:dcit:cryptx:0.071
  • Dcit » Cryptx » Version: 0.072
    cpe:2.3:a:dcit:cryptx:0.072
  • Dcit » Cryptx » Version: 0.073
    cpe:2.3:a:dcit:cryptx:0.073
  • Dcit » Cryptx » Version: 0.074
    cpe:2.3:a:dcit:cryptx:0.074
  • Dcit » Cryptx » Version: 0.075
    cpe:2.3:a:dcit:cryptx:0.075
  • Dcit » Cryptx » Version: 0.076
    cpe:2.3:a:dcit:cryptx:0.076
  • Dcit » Cryptx » Version: 0.077
    cpe:2.3:a:dcit:cryptx:0.077
  • Dcit » Cryptx » Version: 0.078
    cpe:2.3:a:dcit:cryptx:0.078
  • Dcit » Cryptx » Version: 0.079
    cpe:2.3:a:dcit:cryptx:0.079
  • Dcit » Cryptx » Version: 0.080
    cpe:2.3:a:dcit:cryptx:0.080
  • Dcit » Cryptx » Version: 0.082
    cpe:2.3:a:dcit:cryptx:0.082
  • Dcit » Cryptx » Version: 0.083
    cpe:2.3:a:dcit:cryptx:0.083
  • Dcit » Cryptx » Version: 0.084
    cpe:2.3:a:dcit:cryptx:0.084
  • Dcit » Cryptx » Version: 0.085
    cpe:2.3:a:dcit:cryptx:0.085
  • Dcit » Cryptx » Version: 0.086
    cpe:2.3:a:dcit:cryptx:0.086
  • Dcit » Cryptx » Version: 0.087
    cpe:2.3:a:dcit:cryptx:0.087


Contact Us

Shodan ® - All rights reserved