← Back

CVE-2003-0094

nvd nist
Published: Mar 3, 2003Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

A patch for mcookie in the util-linux package for Mandrake Linux 8.2 and 9.0 uses /dev/urandom instead of /dev/random, which causes mcookie to use an entropy source that is more predictable than expected, which may make it easier for certain types of attacks to succeed.

Affected (2)

Util Linux
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Andries Brouwer
Version 2.11n
Version 2.11u

Timeline

No history available yet.