Security Advisory

CVE-2011-3009

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-08-05 22:00:00
Last updated 2024-08-06 23:22:26
Assigner mitre
State PUBLISHED

Description

Ruby before 1.8.6-p114 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900.