{"api_version":"1","generated_at":"2026-07-23T08:13:00+00:00","cve":"CVE-2006-1833","urls":{"html":"https://cve.report/CVE-2006-1833","api":"https://cve.report/api/cve/CVE-2006-1833.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-1833","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-1833"},"summary":{"title":"CVE-2006-1833","description":"Intel RNG Driver in NetBSD 1.6 through 3.0 may incorrectly detect the presence of the pchb interface, which will cause it to always generate the same random number, which allows remote attackers to more easily crack encryption keys generated from the interface.","state":"PUBLISHED","assigner":"mitre","published_at":"2006-04-19 16:06:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"2.6","severity":"","vector":"AV:N/AC:H/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://securitytracker.com/id?1015907","name":"http://securitytracker.com/id?1015907","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"NetBSD Intel RNG Driver May Use a Constant Stream for Randomization - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/24577","name":"http://www.osvdb.org/24577","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25786","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25786","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/19585","name":"http://secunia.com/advisories/19585","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"NetBSD False Intel Hardware RNG Detection Security Issue - Secunia Advisories - Vulnerability Intelligence - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/17496","name":"http://www.securityfocus.com/bid/17496","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"NetBSD False Intel Hardware RNG Detection Predictable Random Number Generation Weakness","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2006-009.txt.asc","name":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2006-009.txt.asc","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/plain","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-1833","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-1833","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"1.6","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"1.6","cpe7":"beta","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"1.6.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"1.6.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"2.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"2.0.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"2.0.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"1833","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"netbsd","cpe5":"netbsd","cpe6":"3.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":{"cve_year":"2006","cve_id":"1833","cve":"CVE-2006-1833","epss":"0.003210000","percentile":"0.551830000","score_date":"2026-04-20","updated_at":"2026-04-21 00:07:48"},"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T17:27:28.745Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"19585","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/19585"},{"name":"NetBSD-SA2006-009","tags":["vendor-advisory","x_refsource_NETBSD","x_transferred"],"url":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2006-009.txt.asc"},{"name":"17496","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/17496"},{"name":"1015907","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1015907"},{"name":"netbsd-intel-rng-security-bypass(25786)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25786"},{"name":"24577","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/24577"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2006-04-12T00:00:00.000Z","descriptions":[{"lang":"en","value":"Intel RNG Driver in NetBSD 1.6 through 3.0 may incorrectly detect the presence of the pchb interface, which will cause it to always generate the same random number, which allows remote attackers to more easily crack encryption keys generated from the interface."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-19T15:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"19585","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/19585"},{"name":"NetBSD-SA2006-009","tags":["vendor-advisory","x_refsource_NETBSD"],"url":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2006-009.txt.asc"},{"name":"17496","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/17496"},{"name":"1015907","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1015907"},{"name":"netbsd-intel-rng-security-bypass(25786)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25786"},{"name":"24577","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/24577"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-1833","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Intel RNG Driver in NetBSD 1.6 through 3.0 may incorrectly detect the presence of the pchb interface, which will cause it to always generate the same random number, which allows remote attackers to more easily crack encryption keys generated from the interface."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"19585","refsource":"SECUNIA","url":"http://secunia.com/advisories/19585"},{"name":"NetBSD-SA2006-009","refsource":"NETBSD","url":"ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2006-009.txt.asc"},{"name":"17496","refsource":"BID","url":"http://www.securityfocus.com/bid/17496"},{"name":"1015907","refsource":"SECTRACK","url":"http://securitytracker.com/id?1015907"},{"name":"netbsd-intel-rng-security-bypass(25786)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/25786"},{"name":"24577","refsource":"OSVDB","url":"http://www.osvdb.org/24577"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2006-1833","datePublished":"2006-04-19T16:00:00.000Z","dateReserved":"2006-04-19T00:00:00.000Z","dateUpdated":"2024-08-07T17:27:28.745Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2006-04-19 16:06:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.6:*:*:*:*:*:*:*","matchCriteriaId":"28A10F5A-067E-4DD8-B585-ABCD6F6B324E"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.6:beta:*:*:*:*:*:*","matchCriteriaId":"9DDC444D-E763-4685-97F8-A027DF6F804D"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.6.1:*:*:*:*:*:*:*","matchCriteriaId":"249FA642-3732-4654-88CB-3F1D19A5860A"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:1.6.2:*:*:*:*:*:*:*","matchCriteriaId":"5071CA39-65B3-4AFB-8898-21819E57A084"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:2.0:*:*:*:*:*:*:*","matchCriteriaId":"A3C3F588-98DA-4F6F-A083-2B9EE534C561"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"1C2ED81B-8DA2-46D0-AE24-C61BF8E78AE9"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:2.0.2:*:*:*:*:*:*:*","matchCriteriaId":"D18C95A3-15E3-41B8-AC28-ACEA57021E24"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:2.0.3:*:*:*:*:*:*:*","matchCriteriaId":"6CFC6B75-9057-4E58-A4D4-8AEC12AE62E4"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:2.1:*:*:*:*:*:*:*","matchCriteriaId":"28BD9F91-2384-4557-9648-25FC00D04677"},{"vulnerable":true,"criteria":"cpe:2.3:o:netbsd:netbsd:3.0:*:*:*:*:*:*:*","matchCriteriaId":"F9CABFAA-594C-45D7-A0C7-795872A0C68A"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"1833","Ordinal":"1","Title":"CVE-2006-1833","CVE":"CVE-2006-1833","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"1833","Ordinal":"1","NoteData":"Intel RNG Driver in NetBSD 1.6 through 3.0 may incorrectly detect the presence of the pchb interface, which will cause it to always generate the same random number, which allows remote attackers to more easily crack encryption keys generated from the interface.","Type":"Description","Title":"CVE-2006-1833"},{"CveYear":"2006","CveId":"1833","Ordinal":"2","NoteData":"2006-04-19","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"1833","Ordinal":"3","NoteData":"2017-07-19","Type":"Other","Title":"Modified"}]}}}