OpenWBEM Insecure Random Number Generator Vulnerability
BID:20807
Info
OpenWBEM Insecure Random Number Generator Vulnerability
| Bugtraq ID: | 20807 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 30 2006 12:00AM |
| Updated: | Oct 31 2006 07:17PM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
OpenWBEM OpenWBEM 3.2.1 OpenWBEM OpenWBEM 3.2 |
| Not Vulnerable: |
OpenWBEM OpenWBEM 3.2.2 |
Discussion
OpenWBEM Insecure Random Number Generator Vulnerability
OpenWBEM generates random numbers in an insecure manner.
An attacker can exploit this issue to gain elevated privileges on the affected server. This issue may lead to other attacks.
OpenWBEM 3.2.0 through 3.2.1 are vulnerable to this issue.
OpenWBEM generates random numbers in an insecure manner.
An attacker can exploit this issue to gain elevated privileges on the affected server. This issue may lead to other attacks.
OpenWBEM 3.2.0 through 3.2.1 are vulnerable to this issue.
Exploit / POC
OpenWBEM Insecure Random Number Generator Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Solution / Fix
OpenWBEM Insecure Random Number Generator Vulnerability
Solution:
The vendor has released an update to address this issue. Please see the references for more information.
Solution:
The vendor has released an update to address this issue. Please see the references for more information.
References
OpenWBEM Insecure Random Number Generator Vulnerability
References:
References:
- OpenWBEM Version 3.2.2 Release Notes (OpenWBEM)
- Vendor Home Page (OpenWBEM)