Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-4121

Опубликовано: 26 нояб. 2019
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS2: 7.5
CVSS3: 9.8

Описание

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.

РелизСтатусПримечание
devel

not-affected

hardy

DNE

lucid

not-affected

maverick

not-affected

natty

not-affected

oneiric

not-affected

upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 28%
0.001
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

redhat
больше 14 лет назад

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.

CVSS3: 9.8
nvd
около 6 лет назад

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.

CVSS3: 9.8
debian
около 6 лет назад

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up ...

CVSS3: 9.8
github
почти 4 года назад

The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.

EPSS

Процентиль: 28%
0.001
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3