Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.
References
Configurations
History
No history.
Information
Published : 2014-12-19 15:59
Updated : 2015-09-10 15:27
NVD link : CVE-2013-4442
Mitre link : CVE-2013-4442
CVE.ORG link : CVE-2013-4442
JSON object : View
Products Affected
pwgen_project
- pwgen
CWE
CWE-310
Cryptographic Issues