Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-4121

Опубликовано: 03 нояб. 2011
Источник: redhat
CVSS2: 7.5

Описание

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4rubyNot affected
Red Hat Enterprise Linux 5rubyNot affected
Red Hat Enterprise Linux 6rubyNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-330
https://bugzilla.redhat.com/show_bug.cgi?id=751800extension): Insecure way of creation exponent value by private RSA key generation

7.5 High

CVSS2

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 6 лет назад

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.

CVSS3: 9.8
nvd
около 6 лет назад

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.

CVSS3: 9.8
debian
около 6 лет назад

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up ...

CVSS3: 9.8
github
почти 4 года назад

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.

7.5 High

CVSS2