Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-33023 | A weak hashing algorithm and small sizes of seeds/secrets in Google's gVisor allowed for a remote attacker to calculate a local IP address and a per-boot identifier that could aid in tracking of a device in certain circumstances. |
Thu, 31 Jul 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-326 CWE-335 |
|
| CPEs | cpe:2.3:a:google:gvisor:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Mon, 24 Feb 2025 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 30 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 30 Jan 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weak hashing algorithm and small sizes of seeds/secrets in Google's gVisor allowed for a remote attacker to calculate a local IP address and a per-boot identifier that could aid in tracking of a device in certain circumstances. | |
| Title | Improved Seeding and Hashing In gVisor | |
| Weaknesses | CWE-328 CWE-339 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2025-02-24T11:50:42.192Z
Reserved: 2024-10-16T08:04:54.647Z
Link: CVE-2024-10026
Updated: 2025-01-30T20:38:27.409Z
Status : Analyzed
Published: 2025-01-30T20:15:32.600
Modified: 2025-07-31T18:33:50.813
Link: CVE-2024-10026
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:31:54Z
EUVD