CVE Database
/

CVE-2005-0106

Back to search

CVE-2005-0106

Published: May 3, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

SSLeay.pm in libnet-ssleay-perl before 1.25 uses the /tmp/entropy file for entropy if a source is not set in the EGD_PATH variable, which allows local users to reduce the cryptographic strength of certain operations by modifying the file.

VendorProductVersions

n/a

n/a

affected
n/a

References

USN-113-1
vendor-advisory
x_refsource_UBUNTU
18639
third-party-advisory
x_refsource_SECUNIA
MDKSA-2006:023
vendor-advisory
x_refsource_MANDRIVA
13471
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now