CVE-2014-1921

parcimonie before 0.8.1, when using a large keyring, sleeps for the same amount of time between fetches, which allows attackers to correlate key fetches via unspecified vectors.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:parcimonie_project:parcimonie:*:*:*:*:*:*:*:*
cpe:2.3:a:parcimonie_project:parcimonie:0.7-1:*:*:*:*:*:*:*
cpe:2.3:a:parcimonie_project:parcimonie:0.6-3:*:*:*:*:*:*:*
cpe:2.3:a:parcimonie_project:parcimonie:0.6-1:*:*:*:*:*:*:*

Information

Published : 2014-02-14 07:55

Updated : 2017-08-28 18:34


NVD link : CVE-2014-1921

Mitre link : CVE-2014-1921


JSON object : View

CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Advertisement

dedicated server usa

Products Affected

parcimonie_project

  • parcimonie