Google Android PRNG Entropy Weakness
BID:61813
Info
Google Android PRNG Entropy Weakness
| Bugtraq ID: | 61813 |
| Class: | Design Error |
| CVE: |
CVE-2013-7373 |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 15 2013 12:00AM |
| Updated: | Jun 30 2014 12:05AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Google Android 3.1.4 Google Android 2.3.5 Google Android 2.2.3 Google Android 3.2 Google Android 3.0 Google Android 2.3.4 Google Android 2.3.3 Google Android 2.3.2 Google Android 2.3.1 Google Android 2.2.2 Google Android 2.2.1 Google Android 2.2 Google Android 2.1 Google Android 1.6 Google Android 1.5 |
| Not Vulnerable: | |
Discussion
Google Android PRNG Entropy Weakness
Google Android is prone to a weakness that may result in weaker cryptographic security.
Attackers can exploit this issue with brute-force techniques to obtain sensitive information that can aid in further attacks.
Google Android is prone to a weakness that may result in weaker cryptographic security.
Attackers can exploit this issue with brute-force techniques to obtain sensitive information that can aid in further attacks.
Exploit / POC
Google Android PRNG Entropy Weakness
An attacker can exploit this issue using readily available tools.
An attacker can exploit this issue using readily available tools.
Solution / Fix
Google Android PRNG Entropy Weakness
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.