CVE-2005-0106

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/05/2005
Last modified:
03/10/2018

Description

SSLeay.pm in libnet-ssleay-perl before 1.25 uses the /tmp/entropy file for entropy if a source is not set in the EGD_PATH variable, which allows local users to reduce the cryptographic strength of certain operations by modifying the file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:ubuntu:ubuntu_linux:5.04:*:*:*:*:*:*:*