Security Advisory

CVE-2005-0106

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2005-05-03 04:00:00
Last updated 2024-08-07 20:57:41
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SSLeay.pm in libnet-ssleay-perl before 1.25 uses the /tmp/entropy file for entropy if a source is not set in the EGD_PATH variable, which allows local users to reduce the cryptographic strength of certain operations by modifying the file.