Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q2pp-3636-pf45

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The random number generator in the Crypto application before 2.0.2.2, and SSH before 2.0.5, as used in the Erlang/OTP ssh library before R14B03, uses predictable seeds based on the current time, which makes it easier for remote attackers to guess DSA host and SSH session keys.

The random number generator in the Crypto application before 2.0.2.2, and SSH before 2.0.5, as used in the Erlang/OTP ssh library before R14B03, uses predictable seeds based on the current time, which makes it easier for remote attackers to guess DSA host and SSH session keys.

EPSS

Процентиль: 87%
0.03371
Низкий

Связанные уязвимости

ubuntu
больше 14 лет назад

The random number generator in the Crypto application before 2.0.2.2, and SSH before 2.0.5, as used in the Erlang/OTP ssh library before R14B03, uses predictable seeds based on the current time, which makes it easier for remote attackers to guess DSA host and SSH session keys.

nvd
больше 14 лет назад

The random number generator in the Crypto application before 2.0.2.2, and SSH before 2.0.5, as used in the Erlang/OTP ssh library before R14B03, uses predictable seeds based on the current time, which makes it easier for remote attackers to guess DSA host and SSH session keys.

debian
больше 14 лет назад

The random number generator in the Crypto application before 2.0.2.2, ...

EPSS

Процентиль: 87%
0.03371
Низкий