CWE-338
202 CVEs • Abstraction: Base • Likelihood of Exploit: Medium
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
The product uses a Pseudo-Random Number Generator (PRNG) in a security context, but the PRNG's algorithm is not cryptographically strong.
CVEs (202)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 28Ipq8074 Firmware Mdm9206 FirmwareMdm9607 Firmware+25 moreJun 17, 2026 Sep 20, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Snapdragon (Automobile, Mobile, Wear) in version IPQ8074, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6574AU, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 820A, SD 835, SD 845, SD 850...Show more |
1Qualcomm 36Ipq8074 Firmware Mdm9206 FirmwareMdm9607 Firmware+33 moreNov 21, 2024 Sep 20, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Snapdragon (Automobile, Mobile, Wear) in version IPQ8074, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA9377, QCA9378, QCA9379, SD 425, SD 427, S...Show more |
1Qualcomm 27Mdm9206 Firmware Mdm9607 FirmwareMdm9640 Firmware+24 moreNov 21, 2024 Sep 20, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6574AU, QCA6584, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 650/52, SD 820A, SD 845, SDM...Show more |
The fallback function of a simple lottery smart contract implementation for Lucky9io, an Ethereum gambling game, generates a random value with the publicly readable variable entry_number. This variable is private, yet it...Show more |
1Theethereumlottery 1The Ethereum Lottery Nov 21, 2024 Sep 7, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The "PayWinner" function of a simplelottery smart contract implementation for The Ethereum Lottery, an Ethereum gambling game, generates a random value with publicly readable variable "maxTickets" (which is private, yet...Show more |
Lightbend Akka 2.5.x before 2.5.16 allows message disclosure and modification because of an RNG error. A random number generator is used in Akka Remoting for TLS (both classic and Artery Remoting). Akka allows configurat...Show more |
The maxRandom function of a smart contract implementation for All For One, an Ethereum gambling game, generates a random value with publicly readable variables because the _seed value can be retrieved with a getStorageAt...Show more |
1Mycryptochamp 1Mycryptochamp Nov 21, 2024 Aug 7, 2018 N/A· v4 5.9 MEDIUM· v3 4.3 MEDIUM· v2 The randMod() function of the smart contract implementation for MyCryptoChamp, an Ethereum game, generates a random value with publicly readable variables such as the current block information and a private variable, (wh...Show more |
The endCoinFlip function and throwSlammer function of the smart contract implementations for Cryptogs, an Ethereum game, generate random numbers with an old block's hash. Therefore, attackers can predict the random numbe...Show more |
The _addguess function of a simplelottery smart contract implementation for 1000 Guess, an Ethereum gambling game, generates a random value with publicly readable variables such as the current block information and a pri...Show more |
1Randomatic Project 1Randomatic Nov 21, 2024 Jun 4, 2018 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 react-native-meteor-oauth is a library for Oauth2 login to a Meteor server in React Native. The oauth Random Token is generated using a non-cryptographically strong RNG (Math.random()). |
It was discovered that QtPass before 1.2.1, when using the built-in password generator, generates possibly predictable and enumerable passwords. This only applies to the QtPass GUI. |
2Debian Enigmail2Debian Linux EnigmailMay 13, 2026 Dec 27, 2017 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 An issue was discovered in Enigmail before 1.9.9. Improper Random Secret Generation occurs because Math.Random() is used by pretty Easy privacy (pEp), aka TBE-01-001. |
Under certain circumstances, the ix86_expand_builtin function in i386.c in GNU Compiler Collection (GCC) version 4.6, 4.7, 4.8, 4.9, 5 before 5.5, and 6 before 6.4 will generate instruction sequences that clobber the sta...Show more |
The Bitcoin Proof-of-Work algorithm does not consider a certain attack methodology related to 80-byte block headers with a variety of initial 64-byte chunks followed by the same 16-byte chunk, multiple candidate root val...Show more |
1Cagintranetworks 1Getsimple Cms May 13, 2026 Apr 30, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Poor cryptographic salt initialization in admin/inc/template_functions.php in GetSimple CMS 3.3.13 allows a network attacker to escalate privileges to an arbitrary user or conduct CSRF attacks via calculation of a sessio...Show more |
wp-includes/ms-functions.php in the Multisite WordPress API in WordPress before 4.7.1 does not properly choose random numbers for keys, which makes it easier for remote attackers to bypass intended access restrictions vi...Show more |
1Oleumtech 2Sensor Wireless I/o Module Wio Dh2 Wireless GatewayMay 6, 2026 Jul 24, 2014 N/A· v4 N/A· v3 7.8 HIGH· v2 OleumTech WIO DH2 Wireless Gateway and Sensor Wireless I/O Modules rely exclusively on a time value for entropy in key generation, which makes it easier for remote attackers to defeat cryptographic protection mechanisms...Show more |
1Qnap 2Ts 239 Pro Firmware Ts 639 Pro FirmwareApr 23, 2026 Sep 21, 2009 N/A· v4 5.5 MEDIUM· v3 4.9 MEDIUM· v2 The QNAP TS-239 Pro and TS-639 Pro with firmware 2.1.7 0613, 3.1.0 0627, and 3.1.1 0815 use the rand library function to generate a certain recovery key, which makes it easier for local users to determine this key via a...Show more |
4Canonical LinuxOpensuse+1 more5Linux Enterprise Desktop Linux Enterprise ServerLinux Kernel+2 moreApr 23, 2026 Sep 18, 2009 N/A· v4 5.5 MEDIUM· v3 7.8 HIGH· v2 The get_random_int function in drivers/char/random.c in the Linux kernel before 2.6.30 produces insufficiently random numbers, which allows attackers to predict the return value, and possibly defeat protection mechanisms...Show more |