CVE-2008-1148
Last modified
CVE-2008-1148 is a vulnerability of currently unknown severity. A certain pseudo-random number generator (PRNG) algorithm that uses ADD with 0 random hops (aka "Algorithm A0"), as used in OpenBSD 3.5 through 4.2 and NetBSD 1.6.2 through 4.0, allows remote attackers to guess sensitive values such as (1) DNS transaction IDs or (2) IP fragmentation IDs by observing a sequence of previously generated values. NOTE: this issue can be leveraged for attacks such as DNS cache poisoning, injection into TCP packets, and OS fingerprinting.. EPSS estimates a 1.42% chance of exploitation in the next 30 days.
Description
A certain pseudo-random number generator (PRNG) algorithm that uses ADD with 0 random hops (aka "Algorithm A0"), as used in OpenBSD 3.5 through 4.2 and NetBSD 1.6.2 through 4.0, allows remote attackers to guess sensitive values such as (1) DNS transaction IDs or (2) IP fragmentation IDs by observing a sequence of previously generated values. NOTE: this issue can be leveraged for attacks such as DNS cache poisoning, injection into TCP packets, and OS fingerprinting.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cosmicperl | Directory Pro | 10.0.3 |
| Darwin | Darwin | 1.0 |
| Darwin | Darwin | 9.1 |
| Navision | Financials Server | 3.0 |
References
- http://secunia.com/advisories/28819Vendor Advisory
- http://secunia.com/advisories/28819Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-1148?
How severe is CVE-2008-1148?
How do I fix CVE-2008-1148?
Are you affected by CVE-2008-1148?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
