CVE-2008-0166
13.05.2008, 17:20
OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that generates predictable numbers, which makes it easier for remote attackers to conduct brute force guessing attacks against cryptographic keys.
| Vendor | Product | Version |
|---|---|---|
| openssl | openssl | 0.9.8c-1 ≤ 𝑥 ≤ 0.9.8g |
| canonical | ubuntu_linux | 6.06 |
| canonical | ubuntu_linux | 7.04 |
| canonical | ubuntu_linux | 7.10 |
| canonical | ubuntu_linux | 8.04 |
| debian | debian_linux | 4.0 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| openssh |
| ||||||||||||||
| openssl |
|
Ubuntu Releases
Ubuntu Product | |||||||||
|---|---|---|---|---|---|---|---|---|---|
| openssh |
| ||||||||
| openssh-blacklist |
| ||||||||
| openssl |
| ||||||||
| openssl-blacklist |
| ||||||||
| openvpn |
| ||||||||
| openvpn-blacklist |
| ||||||||
| ssl-cert |
|
Common Weakness Enumeration
References