A patch for mcookie in the util-linux package for Mandrake Linux 8.2 and 9.0 uses /dev/urandom instead of /dev/random, which causes mcookie to use an entropy source that is more predictable than expected, which may make it easier for certain types of attacks to succeed.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Util-linux | Andries_brouwer | 2.11n (including) | 2.11n (including) |
Util-linux | Andries_brouwer | 2.11u (including) | 2.11u (including) |