CWE-1204

Overview
  • CWE ID
  • 1204
  • CWE Name
  • Generation of Weak Initialization Vector (IV)
  • CWE Abstraction
  • Base
  • CWE structure
  • Simple
  • CWE Status
  • Incomplete
Description
The product uses a cryptographic primitive that uses an Initialization Vector (IV), but the product does not generate IVs that are sufficiently unpredictable or unique according to the expected cryptographic requirements for that primitive.
Extended Description
By design, some cryptographic primitives (such as block ciphers) require that IVs must have certain properties for the uniqueness and/or unpredictability of an IV. Primitives may vary in how important these properties are. I
Related CWEs
CWE ID View ID Nature Ordinal
330 1000 ChildOf Primary