CVE-2000-0535

OpenSSL 0.9.4 - Weak Key Generation on FreeBSD Alpha Systems

Title source: llm
STIX 2.1

Description

OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken.

References (2)

Core 2
Core References
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/1340
Patch, Vendor Advisory vendor-advisory x_refsource_freebsd
http://archives.neohapsis.com/archives/freebsd/2000-06/0083.html

Scores

EPSS 0.0056
EPSS Percentile 68.3%

Details

Status published
Products (3)
freebsd/freebsd 4.0 alpha
freebsd/freebsd 5.0 alpha
openssl/openssl 0.9.4
Published Jun 12, 2000
Tracked Since Feb 18, 2026