CVE-2006-2711 Information

Description

Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier and possibly later 2.8.x releases uses the same initialization vector and key for each message session which allows remote attackers to obtain potentially sensitive information about messages.

Reference

http://secunia.com/advisories/20377 http://securitytracker.com/id?1016184 http://www.kb.cert.org/vuls/id/346377 http://www.kb.cert.org/vuls/id/WDON-6QAQN6 http://www.vupen.com/english/advisories/2006/2068 https://exchange.xforce.ibmcloud.com/vulnerabilities/26740

Share on: