PT-2012-4178 · Cumin · Cumin

Florian Weimer

·

Published

2012-09-28

·

Updated

2021-07-15

·

CVE-2012-2681

CVSS v2.0

5.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Cumin versions prior to 0.1.5444
Description The issue is related to the generation of session keys using predictable random numbers, making it easier for remote attackers to guess the session key.
Recommendations For versions prior to 0.1.5444, update to version 0.1.5444 or later to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-2681
RHSA-2012:1278
RHSA-2012:1281

Affected Products

Cumin