CVE-2011-3009

CVSS v2.0 5 (Medium)
50% Progress
EPSS 0.17 % (55th)
0.17% Progress
Affected Products 1
Advisories 3

Ruby before 1.8.6-p114 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900.

Weaknesses
CWE-310
Cryptographic Issues
Related CVEs
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2011-08-05 22:55:01
(13 years ago)
Updated Date
2017-08-29 01:29:53
(7 years ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Ruby-lang Ruby P111 1.8.6 and prior versions cpe:2.3:a:ruby-lang:ruby::p111 <= 1.8.6
  Ruby-lang Ruby 1.8.6 P110 cpe:2.3:a:ruby-lang:ruby:1.8.6:p110
  Ruby-lang Ruby 1.8.6 P36 cpe:2.3:a:ruby-lang:ruby:1.8.6:p36
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...