Lucene search

K
ubuntucveUbuntu.comUB:CVE-2007-2453
HistoryJun 11, 2007 - 12:00 a.m.

CVE-2007-2453

2007-06-1100:00:00
ubuntu.com
ubuntu.com
15

CVSS2

1.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:H/Au:N/C:P/I:N/A:N

EPSS

0.001

Percentile

44.9%

The random number feature in Linux kernel 2.6 before 2.6.20.13, and
2.6.21.x before 2.6.21.4, (1) does not properly seed pools when there is no
entropy, or (2) uses an incorrect cast when extracting entropy, which might
cause the random number generator to provide the same values after reboots
on systems without an entropy source.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchlinux-source-2.6.15< 2.6.15-29.58UNKNOWN
ubuntu6.10noarchlinux-source-2.6.17< 2.6.17.1-12.40UNKNOWN
ubuntu7.04noarchlinux-source-2.6.20< 2.6.20-16.31UNKNOWN

CVSS2

1.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:H/Au:N/C:P/I:N/A:N

EPSS

0.001

Percentile

44.9%