Описание
Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.06 (включая)
cpe:2.3:a:pwgen_project:pwgen:*:*:*:*:*:*:*:*
EPSS
Процентиль: 70%
0.00654
Низкий
5 Medium
CVSS2
Дефекты
CWE-310
Связанные уязвимости
ubuntu
около 11 лет назад
Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.
debian
около 11 лет назад
Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated ...
github
больше 3 лет назад
Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.
EPSS
Процентиль: 70%
0.00654
Низкий
5 Medium
CVSS2
Дефекты
CWE-310