Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cwq5-xwx7-85wm

Опубликовано: 06 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.

tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.

EPSS

Процентиль: 54%
0.00311
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-338

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 1 года назад

tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.

CVSS3: 5.9
nvd
больше 1 года назад

tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.

CVSS3: 5.9
debian
больше 1 года назад

tgt (aka Linux target framework) before 1.0.93 attempts to achieve ent ...

suse-cvrf
6 месяцев назад

Security update for tgt

EPSS

Процентиль: 54%
0.00311
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-338