Rapid7 Vulnerability & Exploit Database

SUSE: CVE-2015-5276: SUSE Linux Security Advisory

Back to Search

SUSE: CVE-2015-5276: SUSE Linux Security Advisory

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
11/17/2015
Created
07/25/2018
Added
12/18/2015
Modified
02/04/2022

Description

The std::random_device class in libstdc++ in the GNU Compiler Collection (aka GCC) before 4.9.4 does not properly handle short reads from blocking sources, which makes it easier for context-dependent attackers to predict the random values via unspecified vectors.

Solution(s)

  • suse-upgrade-cpp48
  • suse-upgrade-cpp5
  • suse-upgrade-firefox-libffi4
  • suse-upgrade-firefox-libstdc-6
  • suse-upgrade-gcc48
  • suse-upgrade-gcc48-32bit
  • suse-upgrade-gcc48-ada
  • suse-upgrade-gcc48-c
  • suse-upgrade-gcc48-fortran
  • suse-upgrade-gcc48-fortran-32bit
  • suse-upgrade-gcc48-gij
  • suse-upgrade-gcc48-gij-32bit
  • suse-upgrade-gcc48-info
  • suse-upgrade-gcc48-java
  • suse-upgrade-gcc48-locale
  • suse-upgrade-gcc48-obj-c
  • suse-upgrade-gcc48-objc
  • suse-upgrade-gcc48-objc-32bit
  • suse-upgrade-gcc5
  • suse-upgrade-gcc5-32bit
  • suse-upgrade-gcc5-ada
  • suse-upgrade-gcc5-ada-32bit
  • suse-upgrade-gcc5-c
  • suse-upgrade-gcc5-c-32bit
  • suse-upgrade-gcc5-fortran
  • suse-upgrade-gcc5-fortran-32bit
  • suse-upgrade-gcc5-info
  • suse-upgrade-gcc5-locale
  • suse-upgrade-libada48
  • suse-upgrade-libada5
  • suse-upgrade-libada5-32bit
  • suse-upgrade-libasan0
  • suse-upgrade-libasan0-32bit
  • suse-upgrade-libasan2
  • suse-upgrade-libasan2-32bit
  • suse-upgrade-libatomic1
  • suse-upgrade-libatomic1-32bit
  • suse-upgrade-libcilkrts5
  • suse-upgrade-libcilkrts5-32bit
  • suse-upgrade-libffi-devel-gcc5
  • suse-upgrade-libffi-devel-gcc5-32bit
  • suse-upgrade-libffi4
  • suse-upgrade-libffi4-32bit
  • suse-upgrade-libffi48-devel
  • suse-upgrade-libfreebl3
  • suse-upgrade-libfreebl3-32bit
  • suse-upgrade-libfreebl3-x86
  • suse-upgrade-libgcc_s1
  • suse-upgrade-libgcc_s1-32bit
  • suse-upgrade-libgcj48
  • suse-upgrade-libgcj48-32bit
  • suse-upgrade-libgcj48-devel
  • suse-upgrade-libgcj48-jar
  • suse-upgrade-libgcj_bc1
  • suse-upgrade-libgfortran3
  • suse-upgrade-libgfortran3-32bit
  • suse-upgrade-libgomp1
  • suse-upgrade-libgomp1-32bit
  • suse-upgrade-libitm1
  • suse-upgrade-libitm1-32bit
  • suse-upgrade-liblsan0
  • suse-upgrade-libmpx0
  • suse-upgrade-libmpx0-32bit
  • suse-upgrade-libmpxwrappers0
  • suse-upgrade-libmpxwrappers0-32bit
  • suse-upgrade-libobjc4
  • suse-upgrade-libobjc4-32bit
  • suse-upgrade-libquadmath0
  • suse-upgrade-libquadmath0-32bit
  • suse-upgrade-libsoftokn3
  • suse-upgrade-libsoftokn3-32bit
  • suse-upgrade-libsoftokn3-x86
  • suse-upgrade-libstdc-48-devel
  • suse-upgrade-libstdc-48-devel-32bit
  • suse-upgrade-libstdc-6
  • suse-upgrade-libstdc-6-32bit
  • suse-upgrade-libstdc-6-devel-gcc5
  • suse-upgrade-libstdc-6-devel-gcc5-32bit
  • suse-upgrade-libstdc-6-locale
  • suse-upgrade-libtsan0
  • suse-upgrade-libubsan0
  • suse-upgrade-libubsan0-32bit
  • suse-upgrade-mozilla-nss
  • suse-upgrade-mozilla-nss-32bit
  • suse-upgrade-mozilla-nss-devel
  • suse-upgrade-mozilla-nss-tools
  • suse-upgrade-mozilla-nss-x86
  • suse-upgrade-mozillafirefox
  • suse-upgrade-mozillafirefox-branding-sled
  • suse-upgrade-mozillafirefox-devel
  • suse-upgrade-mozillafirefox-translations
  • suse-upgrade-sles12-docker-image
  • suse-upgrade-sles12sp1-docker-image

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;