CWE-1204
Overview
- CWE ID
- 1204
- CWE Name
- Generation of Weak Initialization Vector (IV)
- CWE Abstraction
- Base
- CWE structure
- Simple
- CWE Status
- Incomplete
Description
The product uses a cryptographic primitive that uses an Initialization
Vector (IV), but the product does not generate IVs that are
sufficiently unpredictable or unique according to the expected
cryptographic requirements for that primitive.
Extended Description
By design, some cryptographic primitives
(such as block ciphers) require that IVs
must have certain properties for the
uniqueness and/or unpredictability of an
IV. Primitives may vary in how important
these properties are. I
Related CWEs
CWE ID | View ID | Nature | Ordinal |
---|---|---|---|
330 | 1000 | ChildOf | Primary |