CVE-2003-0094

A patch for mcookie in the util-linux package for Mandrake Linux 8.2 and 9.0 uses /dev/urandom instead of /dev/random, which causes mcookie to use an entropy source that is more predictable than expected, which may make it easier for certain types of attacks to succeed.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:andries_brouwer:util-linux:2.11n:*:*:*:*:*:*:*
cpe:2.3:a:andries_brouwer:util-linux:2.11u:*:*:*:*:*:*:*

History

20 Nov 2024, 23:43

Type Values Removed Values Added
References () http://www.mandrakesoft.com/security/advisories?name=MDKSA-2003:016 - () http://www.mandrakesoft.com/security/advisories?name=MDKSA-2003:016 -
References () http://www.securityfocus.com/bid/6855 - () http://www.securityfocus.com/bid/6855 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/11318 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/11318 -

Information

Published : 2003-03-03 05:00

Updated : 2024-11-20 23:43


NVD link : CVE-2003-0094

Mitre link : CVE-2003-0094

CVE.ORG link : CVE-2003-0094


JSON object : View

Products Affected

andries_brouwer

  • util-linux