CVE-2026-57082
MEDIUMNet::BitTorrent versions through 2.0.1 for Perl generate the MSE Diffie-Hellman private key with a non-cryptographic PRNG
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2026-57082. PoCs published by HermesNA-1.
AI-analyzed exploit summary This repository contains an auto-generated stub module for CVE-2026-57082, a cryptographic weakness in Net::BitTorrent versions through 2.0.1 for Perl. The module outlines the vulnerability (non-cryptographic PRNG used for MSE Diffie-Hellman private key generation) but lacks actual exploit implementation, instead providing placeholder warnings and TODOs.
Description
Net::BitTorrent versions before 2.1.0 for Perl generate the MSE Diffie-Hellman private key with a non-cryptographic PRNG. The MSE (Message Stream Encryption) handshake derives its 160-bit Diffie-Hellman private key from Perl's rand(), a non-cryptographic drand48-class generator seeded once per process, in KeyExchange.pm. The shared secret and the RC4 keys derived from it (the SHA-1 of "keyA" or "keyB", the shared secret, and the infohash) therefore depend entirely on a predictable PRNG. The same handshake sends, in cleartext, random padding drawn from the same rand() sequence in _random_pad, immediately after the public key and the private-key draw. A passive observer of the handshake recovers the PRNG state from the cleartext padding, reconstructs the private key, computes the shared secret from the peer's public key on the wire, derives the RC4 keys, and decrypts the connection, defeating the passive-observation obfuscation MSE provides.
Exploits (1)
This repository contains an auto-generated stub module for CVE-2026-57082, a cryptographic weakness in Net::BitTorrent versions through 2.0.1 for Perl. The module outlines the vulnerability (non-cryptographic PRNG used for MSE Diffie-Hellman private key generation) but lacks actual exploit implementation, instead providing placeholder warnings and TODOs.
References (2)
Scores
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N