CVE-2012-2681
Published Sep 28, 2012
Last updated 3 years ago
Overview
- Description
- Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, uses predictable random numbers to generate session keys, which makes it easier for remote attackers to guess the session key.
- Source
- secalert@redhat.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5.8
- Impact score
- 4.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-310
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:trevor_mckay:cumin:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB8CE3E6-C78F-4363-B731-A7981046EE5B", "versionEndIncluding": "0.1.5192-4" }, { "criteria": "cpe:2.3:a:trevor_mckay:cumin:0.1.3160-1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B33C6617-24FB-4C96-A786-D26B074B0569" }, { "criteria": "cpe:2.3:a:trevor_mckay:cumin:0.1.4369-1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6CF3F68-713E-48E8-8D37-4AE443AF87FC" }, { "criteria": "cpe:2.3:a:trevor_mckay:cumin:0.1.4410-2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8BDF4FB8-5ECF-4A2F-8066-8C362574B55F" }, { "criteria": "cpe:2.3:a:trevor_mckay:cumin:0.1.4494-1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6ADC326A-3CE8-4710-870B-BF540CCB4A5E" }, { "criteria": "cpe:2.3:a:trevor_mckay:cumin:0.1.4794-1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FFB4776E-178C-4488-9C98-98859576E343" }, { "criteria": "cpe:2.3:a:trevor_mckay:cumin:0.1.4916-1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "77B6E427-B880-48EB-8139-2F54381539BB" }, { "criteria": "cpe:2.3:a:trevor_mckay:cumin:0.1.5098-2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "11E7AFB1-7864-47D4-AD75-9B9950BE7BBB" }, { "criteria": "cpe:2.3:a:trevor_mckay:cumin:0.1.5192-1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CACA1231-8272-40A9-B7B3-0141E0F1D7A7" }, { "criteria": "cpe:2.3:o:redhat:enterprise_mrg:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C60FA8B1-1802-4522-A088-22171DCF7A93" } ], "operator": "OR" } ] } ]