Back to search
CVE-2011-4121
Published: Nov 26, 2019
Modified: Aug 7, 2024
PUBLISHED
Description
The OpenSSL extension of Ruby (Git trunk) versions after 2011-09-01 up to 2011-11-03 always generated an exponent value of '1' to be used for private RSA key generation. A remote attacker could use this flaw to bypass or corrupt integrity of services, depending on strong private RSA keys generation mechanism.
| Vendor | Product | Versions |
|---|---|---|
OpenSSL | OpenSSL extension of Ruby (Git trunk) | affected versions after 2011-09-01 up to 2011-11-03 |
References
https://security-tracker.debian.org/tracker/CVE-2011-4121
x_refsource_MISC
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4121
x_refsource_MISC
https://access.redhat.com/security/cve/cve-2011-4121
x_refsource_MISC
http://www.openwall.com/lists/oss-security/2013/07/01/1
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now