Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-3009

Опубликовано: 05 авг. 2011
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

Ruby before 1.8.6-p114 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ruby-lang:ruby:*:p111:*:*:*:*:*:*
Версия до 1.8.6 (включая)
cpe:2.3:a:ruby-lang:ruby:1.8.6:p110:*:*:*:*:*:*
cpe:2.3:a:ruby-lang:ruby:1.8.6:p36:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.00567
Низкий

5 Medium

CVSS2

Дефекты

CWE-310

Связанные уязвимости

ubuntu
около 14 лет назад

Ruby before 1.8.6-p114 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900.

redhat
около 14 лет назад

Ruby before 1.8.6-p114 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900.

debian
около 14 лет назад

Ruby before 1.8.6-p114 does not reset the random seed upon forking, wh ...

github
больше 3 лет назад

Ruby before 1.8.6-p114 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900.

oracle-oval
больше 13 лет назад

ELSA-2012-0070: ruby security update (MODERATE)

EPSS

Процентиль: 67%
0.00567
Низкий

5 Medium

CVSS2

Дефекты

CWE-310