Vulnerability Details CVE-2007-6150
The "internal state tracking" code for the random and urandom devices in FreeBSD 5.5, 6.1 through 6.3, and 7.0 beta 4 allows local users to obtain portions of previously-accessed random values, which could be leveraged to bypass protection mechanisms that rely on secrecy of those values.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 21.8%
CVSS Severity
CVSS v2 Score 2.1
Products affected by CVE-2007-6150
-
cpe:2.3:o:freebsd:freebsd:5.5
-
cpe:2.3:o:freebsd:freebsd:6.1
-
cpe:2.3:o:freebsd:freebsd:6.2
-
cpe:2.3:o:freebsd:freebsd:6.3
-
cpe:2.3:o:freebsd:freebsd:7.0