GSTOOL Insufficient Entropy Random Number Generator Weakness
BID:62326
Info
GSTOOL Insufficient Entropy Random Number Generator Weakness
| Bugtraq ID: | 62326 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 11 2013 12:00AM |
| Updated: | Sep 11 2013 12:00AM |
| Credit: | January Schejbal, Erik Tews, Julian Walde and Felix Schuster |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
GSTOOL Insufficient Entropy Random Number Generator Weakness
GSTOOL is prone to a random number generator weakness.
Attackers can exploit this issue with brute-force techniques to obtain sensitive information that can aid in further attacks.
GSTOOL versions 3.0 through 4.7 are vulnerable.
GSTOOL is prone to a random number generator weakness.
Attackers can exploit this issue with brute-force techniques to obtain sensitive information that can aid in further attacks.
GSTOOL versions 3.0 through 4.7 are vulnerable.
Exploit / POC
GSTOOL Insufficient Entropy Random Number Generator Weakness
An attacker can exploit this issue using readily available tools.
An attacker can exploit this issue using readily available tools.
References
GSTOOL Insufficient Entropy Random Number Generator Weakness
References:
References: