Predictable Random Number Generation in KDE Paste Applet

Predictable Random Number Generation in KDE Paste Applet

CVE-2013-2213 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

The KRandom::random function in KDE Paste Applet after 4.10.5 in kdeplasma-addons uses the GNU C Library rand function's linear congruential generator, which makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the generator output.

Learn more about our Web Application Penetration Testing UK.