OpenSSL PRNG Internal State Disclosure Vulnerability
BID:3004
Info
OpenSSL PRNG Internal State Disclosure Vulnerability
| Bugtraq ID: | 3004 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Jul 10 2001 12:00AM |
| Updated: | Jul 10 2001 12:00AM |
| Credit: | Reportedly discovered by Markku-Juhani O. Saarinen <[email protected]> and published in an OpenSSL Security Advisory on July 10, 2001. |
| Vulnerable: |
SSLeay SSLeay 0.9.1 SSLeay SSLeay 0.9 SSLeay SSLeay 0.8.1 OpenSSL Project OpenSSL 0.9.6 a OpenSSL Project OpenSSL 0.9.6 OpenSSL Project OpenSSL 0.9.5 OpenSSL Project OpenSSL 0.9.4 OpenSSL Project OpenSSL 0.9.3 OpenSSL Project OpenSSL 0.9.2 b OpenSSL Project OpenSSL 0.9.1 c |
| Not Vulnerable: | |
Exploit / POC
OpenSSL PRNG Internal State Disclosure Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.