Description
OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken.
Remediation
References
Related Vulnerabilities
VMware directory traversal and privilege escalation vulnerabilities
Drupal Core 5.x HTTP Response Splitting (5.0 - 5.2)
WordPress Plugin Royal Gallery Cross-Site Scripting (2.3)
IBM WebSEAL Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2023-38371)
MySQL Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2008-4098)