6.4
CVSSv2

CVE-2007-5502

Published: 01/12/2007 Updated: 29/07/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes it easier for malicious users to bypass protection mechanisms that rely on the randomness.

Vulnerable Product Search on Vulmon Subscribe to Product

openssl fips object module 1.1.1