Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Niels Ferguson

Pesquisador deMicrosoft Corporation
#21530de 53,633
11.2CVSS total
Vulnerabilidades · 2
Média
2
PT-2018-1646
5.4
2018-09-11
Microsoft · Windows 10 Servers · CVE-2018-8435
**Name of the Vulnerable Software and Affected Versions** Windows Server 2016 Windows 10 Windows 10 Servers **Description** A security feature bypass issue exists due to the Windows Hyper-V BIOS loader's failure to provide a high-entropy source. This allows a remote attacker to bypass built-in security restrictions. **Recommendations** For Windows Server 2016, Windows 10, and Windows 10 Servers, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2013-1372
5.8
2013-10-11
Nist · Dual Ec Drbg · CVE-2007-6755
**Name of the Vulnerable Software and Affected Versions** Dual Elliptic Curve Deterministic Random Bit Generation (Dual EC DRBG) algorithm (affected versions not specified) **Description** The Dual Elliptic Curve Deterministic Random Bit Generation algorithm contains point Q constants that may have a relationship to certain "skeleton key" values. This could allow attackers to defeat cryptographic protection mechanisms by leveraging knowledge of those values. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.