CVE-2012-3287: Poul-Henning Kamp MD5CRYPT
Medium severity, CVSS 5.0. EPSS: 1.4% chance of exploitation in the next 30 days.
Poul-Henning Kamp md5crypt has insufficient algorithmic complexity and a consequently short runtime, which makes it easier for context-dependent attackers to discover cleartext passwords via a brute-force attack, as demonstrated by an attack using GPU hardware.
Affected products
- Poul-Henning Kamp MD5CRYPT: affected versions not specified
Published 2012-06-13. Last modified 2026-06-16.