Back

MEDIUM

Thinbus generates insufficient entropy: 252 bits vs minimum 256 bits

Published Aug 7, 2025

Description

Thinbus Javascript Secure Remote Password is a browser SRP6a implementation for zero-knowledge password authentication. In versions 2.0.0 and below, a protocol compliance bug causes the client to generate a fixed 252 bits of entropy instead of the intended bit length of the safe prime (defaulted to 2048 bits). The client public value is being generated from a private value that is 4 bits below the specification. This reduces the protocol's designed security margin it is now practically exploitable. The servers full sized 2048 bit random number is used to create the shared session key and password proof. This is fixed in version 2.0.1.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner GitHub_M
Published Aug 7, 2025
Updated Aug 7, 2025
Reserved Jul 31, 2025
CISA Vulnrichment
Updated Aug 7, 2025
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner GitHub_M
Published Aug 7, 2025
Updated Aug 7, 2025
Exploited since n/a
EUVD-2025-23897 GHSA-8Q6V-474H-WHGG