The srandomdev function in Libc in Apple Mac OS X before 10.9, when the kernel random-number generator is unavailable, produces predictable values instead of the intended random values, which makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by leveraging knowledge of these values, related to a compiler-optimization issue.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2013-10-24T01:00:00Z

Updated: 2024-09-17T03:58:41.111Z

Reserved: 2013-08-15T00:00:00Z

Link: CVE-2013-5180

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-10-24T03:48:52.223

Modified: 2013-10-24T23:41:39.510

Link: CVE-2013-5180

cve-icon Redhat

No data.