rpm package
opensuse/librest0_7&distro=openSUSE Leap 16.0
pkg:rpm/opensuse/librest0_7&distro=openSUSE%20Leap%2016.0
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-16615 | Med | 6.8 | < 0.8.1-bp160.2.1 | 0.8.1-bp160.2.1 | Jul 22, 2026 | A flaw was found in librest. The PKCE implementation for OAuth authorization uses the GRand function from the GLib API, a cryptographically insecure pseudo-random number generator. Because the generated "code verifier" lacks sufficient cryptographic entropy, a malicious actor can |
- affected < 0.8.1-bp160.2.1fixed 0.8.1-bp160.2.1
A flaw was found in librest. The PKCE implementation for OAuth authorization uses the GRand function from the GLib API, a cryptographically insecure pseudo-random number generator. Because the generated "code verifier" lacks sufficient cryptographic entropy, a malicious actor can