What happened
A public source linked this CVE to an advisory or demonstration repository. Review the original reference before use.
Affected versions
Unknown product: See original advisory Fixed: See vendor advisory.
Why it matters
This source correlation may provide earlier visibility while structured CVE metadata is still being updated.
Detection & mitigation
- Review the original advisory and validate affected versions.
- Apply vendor-provided updates or mitigations when available.
Public PoC references
RepositoryAuthorFirst seenReference
Exploit-DB 5622OpenSSL 0.9.8c-1 < 0.9.8g-9 (Debian and Derivatives) - Predictable PRNG Brute Force SSHMarkus Mueller2008-05-15VerifiedExploit-DB 5720OpenSSL 0.9.8c-1 < 0.9.8g-9 (Debian and Derivatives) - Predictable PRNG Brute Force SSHWarCat team2008-06-01VerifiedExploit-DB 5632OpenSSL 0.9.8c-1 < 0.9.8g-9 (Debian and Derivatives) - Predictable PRNG Brute Force SSH (Ruby)L4teral2008-05-16VerifiedPoC-in-GitHub · g0tmi1k/debian-sshDebian OpenSSL Predictable PRNG (CVE-2008-0166)★ 411g0tmi1k2013-09-22CandidatePoC-in-GitHub · avarx/vulnkeysDebian OpenSSL Predictable PRNG (CVE-2008-0166)★ 1avarx2018-12-31CandidatePoC-in-GitHub · badkeys/debianopensslPrivate keys vulnerable to Debian OpenSSL bug (CVE-2008-0166)★ 7badkeys2022-05-15CandidatePoC-in-GitHub · demining/Vulnerable-to-Debian-OpenSSL-bug-CVE-2008-0166Search for BTC coins on earlier versions of Bitcoin Core with critical vulnerability OpenSSL 0.9.8 CVE-2008-0166★ 9demining2022-08-26CandidatePoC-in-GitHub · AhegaoPsyops/sslWeaknessExample script demonstrating a weak PRNG, CVE-2008-0166★ 0AhegaoPsyops2025-09-25CandidatePoC-in-GitHub · Faizan8232403/CVE-Exploit-Research-DevelopmentA professional Python tool designed for educational penetration testing, demonstrating SSH vulnerabilities (CVE-2008-0166 / CVE-2008-1657) with interactive shell access, command logging, and automated PDF/DOCX reporting.★ 0Faizan82324032026-03-18CandidatePoC-in-GitHub · QasimShahbaz21/CVE-Exploit-Research-DevelopmentSSH Exploit Tool (Educational Use Only) 📌 Description This tool demonstrates exploitation of: CVE-2008-0166 CVE-2008-1657 It connects to vulnerable SSH services and provides: Persistent interactive shell Command execution logging Automatic PDF & DOCX report generation★ 0QasimShahbaz212026-03-18CandidatePoC-in-GitHub · ethicbrudhack/CVE-2008-0166-BTC-satoshi-mining-wallets★ 0ethicbrudhack2026-09-10CandidateSource timeline
Discovered through Exploit-DBView source ↗
Record history
Record created from the first normalized source observation.
Metadata and source references refreshed.