Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier, and possibly later 2.8.x releases, uses the same initialization vector and key for each message session, which allows remote attackers to obtain potentially sensitive information about messages.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:11
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/20377 - | |
References | () http://securitytracker.com/id?1016184 - | |
References | () http://www.kb.cert.org/vuls/id/346377 - Third Party Advisory, US Government Resource | |
References | () http://www.kb.cert.org/vuls/id/WDON-6QAQN6 - | |
References | () http://www.vupen.com/english/advisories/2006/2068 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/26740 - |
Information
Published : 2006-05-31 22:02
Updated : 2024-11-21 00:11
NVD link : CVE-2006-2711
Mitre link : CVE-2006-2711
CVE.ORG link : CVE-2006-2711
JSON object : View
Products Affected
secure_elements
- class_5_enterprise_vulnerability_management
CWE