Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Hitz

Researcher fromWarCat team
#19810of 53,622
13.2Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2021-4508
5.4
2021-05-21
Openid · Openid · CVE-2008-3280
**Name of the Vulnerable Software and Affected Versions** OpenID (affected versions not specified) **Description** The issue is related to errors in the pseudorandom number generator code of the OpenID decentralized authentication system standard implementation. This could allow a remote attacker to disclose protected information. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2008-1041
7.8
2008-05-13
Openssl · Openssl · CVE-2008-0166
**Name of the Vulnerable Software and Affected Versions** OpenSSL versions 0.9.8c-1 through 0.9.8g-9 **Description** The issue concerns a random number generator in OpenSSL that generates predictable numbers, making it easier for remote attackers to conduct brute force guessing attacks against cryptographic keys. This affects Debian-based operating systems. There is no information provided about the estimated number of potentially affected devices worldwide or details about real-world incidents where this issue was exploited. **Recommendations** For OpenSSL versions 0.9.8c-1 through 0.9.8g-9, update to a version newer than 0.9.8g-9 to resolve the issue. At the moment, there is no information about additional mitigation measures.