Beveiligingsadvies

CVE-2005-0106

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2005-05-03 04:00:00
Laatst bijgewerkt 2024-08-07 20:57:41
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

SSLeay.pm in libnet-ssleay-perl before 1.25 uses the /tmp/entropy file for entropy if a source is not set in the EGD_PATH variable, which allows local users to reduce the cryptographic strength of certain operations by modifying the file.