CVE-2015-9019

In libxslt 1.1.29 and earlier, the EXSLT math.random function was not initialized with a random seed during startup, which could cause usage of this function to produce predictable outputs.
References
Link Resource
https://bugzilla.gnome.org/show_bug.cgi?id=758400 Issue Tracking Patch Third Party Advisory VDB Entry
https://bugzilla.suse.com/show_bug.cgi?id=934119 Issue Tracking Patch Third Party Advisory VDB Entry
https://bugzilla.gnome.org/show_bug.cgi?id=758400 Issue Tracking Patch Third Party Advisory VDB Entry
https://bugzilla.suse.com/show_bug.cgi?id=934119 Issue Tracking Patch Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:xmlsoft:libxslt:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:39

Type Values Removed Values Added
References () https://bugzilla.gnome.org/show_bug.cgi?id=758400 - Issue Tracking, Patch, Third Party Advisory, VDB Entry () https://bugzilla.gnome.org/show_bug.cgi?id=758400 - Issue Tracking, Patch, Third Party Advisory, VDB Entry
References () https://bugzilla.suse.com/show_bug.cgi?id=934119 - Issue Tracking, Patch, Third Party Advisory, VDB Entry () https://bugzilla.suse.com/show_bug.cgi?id=934119 - Issue Tracking, Patch, Third Party Advisory, VDB Entry

Information

Published : 2017-04-05 21:59

Updated : 2024-11-21 02:39


NVD link : CVE-2015-9019

Mitre link : CVE-2015-9019

CVE.ORG link : CVE-2015-9019


JSON object : View

Products Affected

xmlsoft

  • libxslt
CWE
CWE-330

Use of Insufficiently Random Values