CVE

Id
50921  
CVE No.
CVE-2011-3009  
Status
Candidate  
Description
Ruby before 1.8.6-p114 does not reset the random seed upon forking, which makes it easier for context-dependent attackers to predict the values of random numbers by leveraging knowledge of the number sequence obtained in a different child process, a related issue to CVE-2003-0900.  
Phase
Assigned (20110805)  
Votes
None (candidate not yet proposed)  
Comments