cve/2007/CVE-2007-5502.md
2024-05-26 14:27:05 +02:00

791 B

CVE-2007-5502

Description

The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes it easier for attackers to bypass protection mechanisms that rely on the randomness.

POC

Reference

No PoCs from references.

Github