CVE-2009-5057
Published Mar 18, 2011
Last updated 14 years ago
Overview
- Description
- The S/MIME feature in Open Ticket Request System (OTRS) before 2.3.4 does not configure the RANDFILE and HOME environment variables for OpenSSL, which might make it easier for remote attackers to decrypt e-mail messages that had lower than intended entropy available for cryptographic operations, related to inability to write to the seeding file.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-310
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:otrs:otrs:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "56272C04-B43A-4CAE-A12E-829A4000037E", "versionEndIncluding": "2.3.3" }, { "criteria": "cpe:2.3:a:otrs:otrs:0.5:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1985DCF5-4528-4246-B1E7-75703CF8849C" }, { "criteria": "cpe:2.3:a:otrs:otrs:0.5:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "47EFAC2B-AB6C-4327-997C-9B10F7360163" }, { "criteria": "cpe:2.3:a:otrs:otrs:0.5:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5D25927B-BDD3-4A3C-901B-8F62C422D266" }, { "criteria": "cpe:2.3:a:otrs:otrs:0.5:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7134888F-1296-4AFD-8ECC-A1A2486C74AE" }, { "criteria": "cpe:2.3:a:otrs:otrs:0.5:beta5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5F7F2EAA-0744-4BFA-AAEB-66515507BC34" }, { "criteria": "cpe:2.3:a:otrs:otrs:0.5:beta6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B781EFF2-2502-4212-89DB-BF52DFBA41BA" }, { "criteria": "cpe:2.3:a:otrs:otrs:0.5:beta7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E4196EF-6C16-473C-9A71-A8FC728CD2DD" }, { "criteria": "cpe:2.3:a:otrs:otrs:0.5:beta8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9E00ACBC-60E5-44B7-961C-23CD1903112D" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ACCB8907-B5F7-4C20-A6CE-C8D52F2D1DE3" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C433CD8B-143A-4237-A54B-A9D4C27B061C" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.0:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42D518B5-B9A9-4831-927C-104D2803533E" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2ACEE63A-4C9C-46F4-BF73-51C931C046BD" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6A81DFFC-99A6-4AFB-BD95-7202528B87CD" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3FC0F48B-5E12-4656-B848-2DC9A4F8D00C" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.1:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE262525-B533-46C9-B845-1F5214F6177F" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.1.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8371E67D-8784-4C0B-B577-2FBC051F8CA0" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.1.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6FF4CC40-2DB2-474B-ABC3-57EA268CACDB" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "13E9302A-1278-40B8-B2D4-FEB9BB276622" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9582CBC7-B5FA-467D-8F1B-AF9AB308F27C" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EBAABF11-2B91-41DF-9564-E75D88AE43A8" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "824350BB-4C29-43FE-B205-22D36BE93731" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.2.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C2C4825A-A860-4212-83EA-FE04B110A07C" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.2.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C517953B-0B47-4B45-90DA-C9DCC8E2536A" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.2.0:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C5C3344F-E284-477B-A322-ABF34AD80124" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DC14AEFD-7F68-4E64-9D23-A933352E74C2" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D95DB73E-D417-455F-A754-67555E86AD92" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CC0430A7-F27E-430C-9D9D-A4AE86C889D0" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A2278B3B-B9D6-4E67-B118-2B798C5F1432" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.3.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5186A3DD-7D17-4D2E-B756-EF1AD5C6B42A" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.3.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3E7556D7-D593-4AF3-8D0E-7E10E1C5316A" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.3.0:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "05747F3E-27E8-4E04-B80D-D8C38FBDA4A4" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.3.0:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74CBA83A-443E-4B1D-85D2-55FFB2FEB782" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2F6FE3DE-6D43-404F-BCE8-861E0584AA18" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE712DC3-5CA0-4157-A501-483BBDBF7B0D" }, { "criteria": "cpe:2.3:a:otrs:otrs:1.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "86CD9921-3CFC-49F7-9C91-5049E41ADD15" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A777AA53-6900-483D-8C31-F9C415DE9B2D" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "53949C54-F416-46C6-A784-441880F0D8E2" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2896D75B-07EC-4224-9018-0BF55DE16379" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.0:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A6607C7B-E121-4DCD-8FA0-5B202B97D624" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.0:beta5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4FBA783C-32B5-4264-9701-3843710499E4" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.0:beta6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1EB26560-C681-436F-9F41-D927C501791E" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "49CBB470-37A6-4D09-BA71-8EAB8931554E" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CF1D725C-CBE6-49A4-B6FC-3D80E35E0135" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "63608BED-2700-4EF7-9038-B295FF373FD0" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5386B686-3421-4F4E-AC5E-6567FE12E03B" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0E712714-6E03-43BA-B375-929638730B44" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12B1D7F7-51C3-460E-BDE3-0C40B692B622" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF9AEA70-9DC8-41B5-A4D4-F86828F9E35A" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E7BAB384-AC74-4D75-BFE2-8CBC2C0A830F" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E365F79A-BDDA-430D-B39F-FADADA91A0F6" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DC9223D9-B5F8-4D9A-98F8-5D73852B2E0C" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC91C532-9CCD-4353-A6C3-E297A1F5BD77" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6BAAB79E-8DC5-4BFF-9BD2-9215DA2B775D" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E9C7B601-0CBD-4861-855E-A4F64157A8D3" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B715EC14-D79A-4CB4-A875-380F66A45C3D" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "20C9C4DB-4E5D-4D01-B174-D6682831B184" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D25611D-231B-4CBA-8DC3-5F6CE90ADA56" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "01E9FF1B-AFFE-43C1-8E06-15DA8564D62F" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ACE6A6EB-7264-4AE8-8CC4-994969E8B136" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.0:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FEEFDE04-B409-47BF-BF71-0C87A7A6893D" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.0:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7ECC731E-7B47-4AAA-B009-E8CE73AE354A" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DADC404F-08B0-48A7-84DB-5270B8E1A147" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "091E423C-A9D5-4ED8-93C7-5CDD57DC3B00" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CAEC4E93-34C5-418B-B12C-CABE500D5171" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "75BE131A-342E-475C-9522-E53A8A8A1BA0" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF62E279-212F-40B4-B2B3-429D6A6164BA" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6FEFC32-3880-4CEA-9AD1-B1669A3CACE7" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A0A9CD5E-655A-423B-805B-8953122D2509" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "64BCF69B-4DB6-423E-BCE9-7CAEA74B1568" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9307C840-9EEE-4A23-8FAF-258D683E14A0" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.2.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2A6F2752-5D88-4007-96C8-DFA1697B0AC0" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.3.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "29823A84-ACC0-410F-B2A5-C659C8F06625" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.3.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2BC10A3E-F32A-4A16-BDD2-930ADB973693" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.3.0:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1D368E58-79AD-4C55-B867-A75FF3F98DE9" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.3.0:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8AAF73C6-FCCE-43C7-BD67-F8CFC4EA3A32" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.3.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "09EF0162-5102-4F95-82CF-DF541B50858D" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55F536B9-11F6-4F3F-9293-25D23F987C9E" }, { "criteria": "cpe:2.3:a:otrs:otrs:2.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CD6DF09D-A8D8-4C77-A4C9-46BD570C2CE1" } ], "operator": "OR" } ] } ]