VYPR
High severity7.5NVD Advisory· Published Feb 28, 2020· Updated Jun 17, 2026

CVE-2019-10064

CVE-2019-10064

Description

hostapd before 2.6, in EAP mode, makes calls to the rand() and random() standard library functions without any preceding srand() or srandom() call, which results in inappropriate use of deterministic values. This was fixed in conjunction with CVE-2016-10743.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:w1.fi:hostapd:*:*:*:*:*:*:*:*
    Range: <2.6
  • Debian/linux2 versions
    cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
  • hostapd/hostapddescription
  • Hostap/hostapdllm-fuzzy
    Range: <2.6

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.