CVE-2012-6661

Publication date 3 November 2014

Last updated 24 July 2024


Ubuntu priority

Description

Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, does not reseed the pseudo-random number generator (PRNG), which makes it easier for remote attackers to guess the value via unspecified vectors. NOTE: this issue was SPLIT from CVE-2012-5508 due to different vulnerability types (ADT2).

Status

Package Ubuntu Release Status
zope2.13 14.10 utopic
Not affected
14.04 LTS trusty Not in release
12.04 LTS precise Not in release
10.04 LTS lucid Not in release


Access our resources on patching vulnerabilities