The xfer_secondary_pool function in drivers/char/random.c in the Linux kernel 2.4 before 2.4.35 performs reseed operations on only the first few bytes of a buffer, which might make it easier for attackers to predict the output of the random number generator, related to incorrect use of the sizeof operator.
| Product | Vendor | Version |
|---|---|---|
| n/a | n/a | < 2f21a7cbaaa93926f5be15bc095b9c57c35748d9 |