Vulnerability in IBM Worklight and Mobile Foundation due to PRNG Initialization Issues
CVE-2013-5391
5.3MEDIUM
What is CVE-2013-5391?
The vulnerability arises from improper initialization of the pseudo random number generator (PRNG) in both the Android environment and the Java Cryptography Architecture (JCA) utilized in IBM Worklight and Mobile Foundation. This flaw can allow attackers to bypass cryptographic safeguards, making it easier for them to exploit applications using these platforms. Updates are recommended to mitigate the risks associated with these vulnerabilities.