CVE-2008-0166
13.05.2008, 17:20
OpenSSL 0.9.8c-1 up to versions before 0.9.8g-9 on Debian-based operating systems uses a random number generator that generates predictable numbers, which makes it easier for remote attackers to conduct brute force guessing attacks against cryptographic keys.
Vendor | Product | Version |
---|---|---|
openssl | openssl | 0.9.8c-1 ≤ 𝑥 ≤ 0.9.8g |
canonical | ubuntu_linux | 6.06 |
canonical | ubuntu_linux | 7.04 |
canonical | ubuntu_linux | 7.10 |
canonical | ubuntu_linux | 8.04 |
debian | debian_linux | 4.0 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
openssh |
| ||||||||||||||
openssl |
|

Ubuntu Releases
Ubuntu Product | |||||||||
---|---|---|---|---|---|---|---|---|---|
openssh |
| ||||||||
openssh-blacklist |
| ||||||||
openssl |
| ||||||||
openssl-blacklist |
| ||||||||
openvpn |
| ||||||||
openvpn-blacklist |
| ||||||||
ssl-cert |
|
Common Weakness Enumeration
References