Lucene search

K
cvelistMitreCVELIST:CVE-2008-1146
HistoryMar 04, 2008 - 11:00 p.m.

CVE-2008-1146

2008-03-0423:00:00
mitre
www.cve.org
2

AI Score

6.6

Confidence

High

EPSS

0.016

Percentile

87.7%

A certain pseudo-random number generator (PRNG) algorithm that uses XOR and 3-bit random hops (aka β€œAlgorithm X3”), as used in OpenBSD 2.8 through 4.2, allows remote attackers to guess sensitive values such as DNS transaction IDs by observing a sequence of previously generated values. NOTE: this issue can be leveraged for attacks such as DNS cache poisoning against OpenBSD’s modification of BIND.

AI Score

6.6

Confidence

High

EPSS

0.016

Percentile

87.7%

Related for CVELIST:CVE-2008-1146