# CVE-2001-1467

## Summary

- **CVE ID:** CVE-2001-1467
- **Severity:** UNKNOWN
- **CVSS Score:** 0.03
- **CWE:** N/A
- **Published:** Apr 21, 2005
- **Last Modified:** Mar 16, 2026

## Description

mkpasswd in expect 5.2.8, as used by Red Hat Linux 6.2 through 7.0, seeds its random number generator with its process ID, which limits the space of possible seeds and makes it easier for attackers to conduct brute force password attacks.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://archives.neohapsis.com/archives/bugtraq/2001-04/0173.html)
- [CNA](https://exchange.xforce.ibmcloud.com/vulnerabilities/6382)
- [CNA](http://www.kb.cert.org/vuls/id/527736)
- [CNA](http://securitytracker.com/id?1001303)
- [CNA](http://www.securityfocus.com/bid/2632)
- [CNA](http://archives.neohapsis.com/archives/bugtraq/2001-04/0192.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.64%
- **EPSS Percentile:** 70.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-17._