CWE-333: Improper Handling of Insufficient Entropy in TRNG
VariantDraftExploit Likelihood: Low
True random number generators (TRNG) generally have a limited source of entropy and therefore can fail or block.
View on MITREBack to CWE Lookup
Extended Description
The rate at which true random numbers can be generated is limited. It is important that one uses them only when they are needed for security.
Technical Details
- Structure
- Simple
Applicable To
Not Language-Specific