VYPR

Debian Predictable Random Number Generator

by Debian

CVEs (1)

  • CVE-2008-3280MedMay 21, 2021
    risk 0.42cvss 5.9epss 0.04

    It was found that various OpenID Providers (OPs) had TLS Server Certificates that used weak keys, as a result of the Debian Predictable Random Number Generator (CVE-2008-0166). In combination with the DNS Cache Poisoning issue (CVE-2008-1447) and the fact that almost all SSL/TLS…