Description
Off-by-one error in the get_prng_bytes function in crypto/ansi_cprng.c in the Linux kernel through 3.11.4 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms via multiple requests for small amounts of data, leading to improper management of the state of the consumed data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2906-1 | linux-2.6 security update |
EUVD |
EUVD-2013-4231 | Off-by-one error in the get_prng_bytes function in crypto/ansi_cprng.c in the Linux kernel through 3.11.4 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms via multiple requests for small amounts of data, leading to improper management of the state of the consumed data. |
Ubuntu USN |
USN-2064-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-2065-1 | Linux kernel (EC2) vulnerabilities |
Ubuntu USN |
USN-2068-1 | Linux kernel (Quantal HWE) vulnerabilities |
Ubuntu USN |
USN-2070-1 | Linux kernel (Saucy HWE) vulnerabilities |
Ubuntu USN |
USN-2071-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-2072-1 | Linux kernel (OMAP4) vulnerabilities |
Ubuntu USN |
USN-2074-1 | Linux kernel (OMAP4) vulnerabilities |
Ubuntu USN |
USN-2075-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-2076-1 | Linux kernel (OMAP4) vulnerabilities |
Ubuntu USN |
USN-2109-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-2110-1 | Linux kernel (OMAP4) vulnerabilities |
Ubuntu USN |
USN-2158-1 | Linux kernel (Raring HWE) vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T16:38:01.956Z
Reserved: 2013-06-12T00:00:00.000Z
Link: CVE-2013-4345
No data.
Status : Deferred
Published: 2013-10-10T10:55:06.380
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-4345
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN