CVE-2013-7372
Summary
| CVE | CVE-2013-7372 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2014-04-29 20:55:08 UTC |
| Updated | 2026-05-06 22:30:45 UTC |
| Description | The engineNextBytes function in classlib/modules/security/src/main/java/common/org/apache/harmony/security/provider/crypto/SHA1PRNG_SecureRandomImpl.java in the SecureRandom implementation in Apache Harmony through 6.0M3, as used in the Java Cryptography Architecture (JCA) in Android before 4.4 and other products, when no seed is provided by the user, uses an incorrect offset value, which makes it easier for attackers to defeat cryptographic protection mechanisms by leveraging the resulting PRNG predictability, as exploited in the wild against Bitcoin wallet applications in August 2013. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
PartialAvailability
NoneAV:N/AC:L/Au:N/C:N/I:P/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Harmony | All | m3 | All | All |
| Operating System | Android | 4.0 | All | All | All | |
| Operating System | Android | 4.0.1 | All | All | All | |
| Operating System | Android | 4.0.2 | All | All | All | |
| Operating System | Android | 4.0.3 | All | All | All | |
| Operating System | Android | 4.0.4 | All | All | All | |
| Operating System | Android | 4.1 | All | All | All | |
| Operating System | Android | 4.1.2 | All | All | All | |
| Operating System | Android | 4.2 | All | All | All | |
| Operating System | Android | 4.2.1 | All | All | All | |
| Operating System | Android | 4.2.2 | All | All | All | |
| Operating System | Android | 4.3 | All | All | All | |
| Operating System | Android | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.nds.rub.de/media/nds/veroeffentlichungen/2013/03/25/paper_2.pdf | af854a3a-2127-422b-91ae-364da2661108 | www.nds.rub.de | Exploit |
| Some SecureRandom Thoughts | Android Developers Blog | af854a3a-2127-422b-91ae-364da2661108 | android-developers.blogspot.com.au | Patch |
| luni/src/main/java/org/apache/harmony/security/provider/crypto/SHA1PRNG_SecureRandomImpl.java - platform/libcore - Git at Google | af854a3a-2127-422b-91ae-364da2661108 | android.googlesource.com | Patch |
| Android Security Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | bitcoin.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.