Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-5502

Опубликовано: 01 дек. 2007
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes it easier for attackers to bypass protection mechanisms that rely on the randomness.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:openssl:fips_object_module:1.1.1:*:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.00543
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-310

Связанные уязвимости

ubuntu
почти 18 лет назад

The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes it easier for attackers to bypass protection mechanisms that rely on the randomness.

redhat
почти 18 лет назад

The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes it easier for attackers to bypass protection mechanisms that rely on the randomness.

github
больше 3 лет назад

The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes it easier for attackers to bypass protection mechanisms that rely on the randomness.

EPSS

Процентиль: 67%
0.00543
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-310