Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.117026
Category:General
Title:OpenSSL < 0.9.6b Information Disclosure Vulnerability
Summary:OpenSSL is prone to an information disclosure vulnerability.
Description:Summary:
OpenSSL is prone to an information disclosure vulnerability.

Vulnerability Insight:
The Pseudo-Random Number Generator (PRNG) in OpenSSL allows attackers
to use the output of small PRNG requests to determine the internal state information, which could be
used by attackers to predict future pseudo-random numbers.

Affected Software/OS:
OpenSSL versions before 0.9.6b.

Solution:
Update to version 0.9.6b or later.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2001-1141
BugTraq ID: 3004
http://www.securityfocus.com/bid/3004
Bugtraq: 20010710 OpenSSL Security Advisory: PRNG weakness in versions up to 0.9.6a (Google Search)
http://www.securityfocus.com/archive/1/195829
Conectiva Linux advisory: CLA-2001:418
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000418
En Garde Linux Advisory: ESA-20010709-01
http://www.linuxsecurity.com/advisories/other_advisory-1483.html
FreeBSD Security Advisory: FreeBSD-SA-01:51
http://www.securityfocus.com/advisories/3475
http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-065.php3?dis=8.0
NETBSD Security Advisory: NetBSD-SA2001-013
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2001-013.txt.asc
http://www.osvdb.org/853
http://www.redhat.com/support/errata/RHSA-2001-051.html
XForce ISS Database: openssl-prng-brute-force(6823)
https://exchange.xforce.ibmcloud.com/vulnerabilities/6823
CopyrightCopyright (C) 2020 Greenbone Networks GmbH

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.