mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-03 17:08:02 +02:00
18 lines
1021 B
Markdown
18 lines
1021 B
Markdown
### [CVE-2008-1147](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1147)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
A certain pseudo-random number generator (PRNG) algorithm that uses XOR and 2-bit random hops (aka "Algorithm X2"), as used in OpenBSD 2.6 through 3.4, Mac OS X 10 through 10.5.1, FreeBSD 4.4 through 7.0, and DragonFlyBSD 1.0 through 1.10.1, allows remote attackers to guess sensitive values such as IP fragmentation IDs by observing a sequence of previously generated values. NOTE: this issue can be leveraged for attacks such as injection into TCP packets and OS fingerprinting.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://www.trusteer.com/docs/OpenBSD_DNS_Cache_Poisoning_and_Multiple_OS_Predictable_IP_ID_Vulnerability.pdf
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|