Executive Summary

Informations
Name CVE-2011-3599 First vendor Publication 2011-10-10
Vendor Cve Last vendor Modification 2011-10-21

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:M/Au:N/C:P/I:P/A:N)
Cvss Base Score 5.8 Attack Range Network
Cvss Impact Score 4.9 Attack Complexity Medium
Cvss Expoit Score 8.6 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

The Crypt::DSA (aka Crypt-DSA) module 1.17 and earlier for Perl, when /dev/random is absent, uses the Data::Random module, which makes it easier for remote attackers to spoof a signature, or determine the signing key of a signed message, via a brute-force attack.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3599

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-310 Cryptographic Issues

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 11

Open Source Vulnerability Database (OSVDB)

Id Description
76025 Crypt-DSA Module for Perl /dev/random Absence Random Number Generator Weakness

Nessus® Vulnerability Scanner

Date Description
2013-09-26 Name : The remote Mandriva Linux host is missing a security update.
File : mandriva_MDVSA-2013-241.nasl - Type : ACT_GATHER_INFO
2013-09-13 Name : The remote Fedora host is missing a security update.
File : fedora_2013-15755.nasl - Type : ACT_GATHER_INFO
2013-09-13 Name : The remote Fedora host is missing a security update.
File : fedora_2013-15786.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

Source Url
BID http://www.securityfocus.com/bid/49928
CONFIRM https://bugzilla.redhat.com/show_bug.cgi?id=743567
MISC https://rt.cpan.org/Public/Bug/Display.html?id=71421
MLIST http://www.openwall.com/lists/oss-security/2011/10/05/5
http://www.openwall.com/lists/oss-security/2011/10/05/9
OSVDB http://osvdb.org/76025
SECUNIA http://secunia.com/advisories/46275

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
Date Informations
2020-05-23 01:46:43
  • Multiple Updates
2020-05-23 00:31:10
  • Multiple Updates
2016-06-28 18:50:25
  • Multiple Updates
2016-04-26 21:05:51
  • Multiple Updates
2014-02-17 11:05:24
  • Multiple Updates
2013-05-10 23:07:54
  • Multiple Updates