Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-4442

Опубликовано: 19 дек. 2014
Источник: debian

Описание

Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pwgenfixed2.07-1package

Примечания

  • /dev/random is universally available, if an attacker can create an environment

  • where it's not available that opens a far bigger can of worms

Связанные уязвимости

ubuntu
около 11 лет назад

Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.

nvd
около 11 лет назад

Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.

github
больше 3 лет назад

Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.