CVE Vulnerabilities

CVE-2013-2260

Insufficient Entropy

Published: Nov 04, 2019 | Modified: Nov 06, 2019
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness

Weakness

The product uses an algorithm or scheme that produces insufficient entropy, leaving patterns or clusters of values that are more likely to occur than others.

Affected Software

Name Vendor Start Version End Version
Cryptocat Cryptocat_project * 2.0.22 (excluding)

Potential Mitigations

References