CVE-2021-0131: Weak RNG
Use of cryptographically weak pseudo-random number generator (PRNG) in an API for the Intel(R) Security Library before version 3.3 may allow an authenticated user to potentially enable information disclosure via network access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-0131?
CVE-2021-0131 is classified as a high severity vulnerability due to the potential for information disclosure via network access.
How do I fix CVE-2021-0131?
To remediate CVE-2021-0131, update the Intel Security Library to version 3.3 or higher.
What are the implications of CVE-2021-0131?
CVE-2021-0131 may allow an authenticated user to disclose sensitive information through exploitation of a weak pseudo-random number generator.
Which versions of Intel Security Library are affected by CVE-2021-0131?
CVE-2021-0131 affects all versions of Intel Security Library prior to version 3.3.
Who is affected by CVE-2021-0131?
Authenticated users of systems utilizing affected versions of Intel's Security Library may be at risk from CVE-2021-0131.