Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-0299

Опубликовано: 16 янв. 2008
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3

Описание

common.py in Paramiko 1.7.1 and earlier, when using threads or forked processes, does not properly use RandomPool, which allows one session to obtain sensitive information from another session by predicting the state of the pool.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

1.7.3-1
edgy

ignored

end of life, was needed
feisty

ignored

end of life, was needed
gutsy

ignored

end of life, was needed
hardy

ignored

end of life
intrepid

not-affected

1.7.3-1
jaunty

not-affected

1.7.3-1
karmic

not-affected

1.7.3-1
lucid

not-affected

1.7.3-1

Показывать по

EPSS

Процентиль: 78%
0.01232
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 17 лет назад

common.py in Paramiko 1.7.1 and earlier, when using threads or forked processes, does not properly use RandomPool, which allows one session to obtain sensitive information from another session by predicting the state of the pool.

nvd
больше 17 лет назад

common.py in Paramiko 1.7.1 and earlier, when using threads or forked processes, does not properly use RandomPool, which allows one session to obtain sensitive information from another session by predicting the state of the pool.

debian
больше 17 лет назад

common.py in Paramiko 1.7.1 and earlier, when using threads or forked ...

CVSS3: 6.5
github
больше 3 лет назад

Paramiko Unsafe randomness usage may allow access to sensitive information

EPSS

Процентиль: 78%
0.01232
Низкий

4.3 Medium

CVSS2