CVE-2011-0766

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
7.8
HIGH
Affected
1
PROJECT

Description

The random number generator in the Crypto application before 2.0.2.2, and SSH before 2.0.5, as used in the Erlang/OTP ssh library before R14B03, uses predictable seeds based on the current time, which makes it easier for remote attackers to guess DSA host and SSH session keys.

Erlang/OTP
GitHubGitHub
12.2K