==========================================================================
Ubuntu Security Notice USN-7024-1
September 19, 2024

tgt vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 20.04 LTS

Summary:

tgt could be made to generate identical sequence of challenges.

Software Description:
- tgt: Linux SCSI target user-space daemon and tools

Details:

It was discovered that tgt attempts to achieve entropy
by calling rand without srand. The PRNG seed is always 1,
and thus the sequence of challenges is always identical.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.04 LTS
  tgt                             1:1.0.79-2ubuntu1.1

In general, a standard system update will make all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-7024-1
  CVE-2024-45751

Package Information:
  https://launchpad.net/ubuntu/+source/tgt/1:1.0.79-2ubuntu1.1

Ubuntu 7024-1: tgt Security Advisory Updates

September 19, 2024
tgt could be made to generate identical sequence of challenges.

Summary

A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS Summary: tgt could be made to generate identical sequence of challenges. Software Description: - tgt: Linux SCSI target user-space daemon and tools Details: It was discovered that tgt attempts to achieve entropy by calling rand without srand. The PRNG seed is always 1, and thus the sequence of challenges is always identical.

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS tgt 1:1.0.79-2ubuntu1.1 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-7024-1

CVE-2024-45751

Severity
Ubuntu Security Notice USN-7024-1

Package Information

https://launchpad.net/ubuntu/+source/tgt/1:1.0.79-2ubuntu1.1

Related News