Unrated severityNVD Advisory· Published Nov 17, 2015· Updated May 6, 2026
CVE-2015-5276
CVE-2015-5276
Description
The std::random_device class in libstdc++ in the GNU Compiler Collection (aka GCC) before 4.9.4 does not properly handle short reads from blocking sources, which makes it easier for context-dependent attackers to predict the random values via unspecified vectors.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- lists.opensuse.org/opensuse-updates/2015-11/msg00054.htmlnvdMailing ListThird Party Advisory
- lists.opensuse.org/opensuse-updates/2016-04/msg00052.htmlnvdMailing ListThird Party Advisory
- www.securitytracker.com/id/1034375nvdThird Party AdvisoryVDB Entry
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- gcc.gnu.org/bugzilla/show_bug.cginvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.