Описание
tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.
EPSS
Процентиль: 45%
0.00551
Низкий
5.9 Medium
CVSS3
Дефекты
CWE-338
Связанные уязвимости
CVSS3: 5.9
ubuntu
около 2 лет назад
tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.
CVSS3: 5.9
debian
около 2 лет назад
tgt (aka Linux target framework) before 1.0.93 attempts to achieve ent ...
CVSS3: 5.9
github
около 2 лет назад
tgt (aka Linux target framework) before 1.0.93 attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.
EPSS
Процентиль: 45%
0.00551
Низкий
5.9 Medium
CVSS3
Дефекты
CWE-338