漏洞信息详情
Dell EMC RSA BSAFE Micro Edition Suite和RSA BSAFE Crypto-C Micro Edition 缓冲区错误漏洞
漏洞简介
Dell RSA BSAFE Micro Edition Suite和RSA BSAFE Crypto-C Micro Edition都是美国戴尔(Dell)公司的一款加密工具包。
Dell EMC RSA BSAFE MES和RSA BSAFE Crypto-C Micro Edition中存在缓冲区越界读取漏洞。远程攻击者可借助恶意构建的ASN.1数据利用该漏洞造成拒绝服务。以下产品和版本受到影响:Dell EMC RSA BSAFE MES 4.0.11之前的4.0.x版本,4.1.6之前的4.1.x版本;RSA BSAFE Crypto-C Micro Edition 4.0.5.3之前的4.0.x版本。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,详情请关注厂商主页:
https://www.dellemc.com/
参考网址
来源:FULLDISC
链接:http://seclists.org/fulldisclosure/2018/Aug/46
来源:N/A
链接:https://www.oracle.com/security-alerts/cpuapr2020.html
来源:MISC
链接:https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
来源:dell.com
链接:http://dell.com
来源:seclists.org
链接:https://seclists.org/fulldisclosure/2018/Aug/46
来源:www.oracle.com
链接:https://www.oracle.com/security-alerts/cpujan2020.html
来源:BID
链接:https://www.securityfocus.com/bid/108106
来源:MISC
链接:https://www.oracle.com/security-alerts/cpujul2020.html
来源:www.oracle.com
链接:https://www.oracle.com/security-alerts/cpuoct2020.html
来源:www.oracle.com
链接:https://www.oracle.com/security-alerts/cpujul2020.html
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/RSA-BSAFE-Micro-Edition-Suite-out-of-bounds-memory-reading-via-ASN-1-Data-33645
来源:www.securityfocus.com
链接:https://www.securityfocus.com/bid/108106
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Oracle-Database-vulnerabilities-of-July-2019-29788
来源:www.oracle.com
链接:https://www.oracle.com/security-alerts/cpujan2020verbose.html
受影响实体
- Emc Rsa_bsafe:4.0.5:~~Micro_edition_suite~~~<!--2000-1-1-->
- Emc Rsa_bsafe:4.0.4:~~Micro_edition_suite~~~<!--2000-1-1-->
- Emc Rsa_bsafe:4.0.3:~~Micro_edition_suite~~~<!--2000-1-1-->
- Emc Rsa_bsafe:4.0.2:~~Micro_edition_suite~~~<!--2000-1-1-->
- Emc Rsa_bsafe:4.0.1:~~Micro_edition_suite~~~<!--2000-1-1-->
补丁
- Dell EMC RSA BSAFE Micro Edition Suite和RSA BSAFE Crypto-C Micro Edition 缓冲区错误漏洞的修复措施<!--2018-9-17-->
还没有评论,来说两句吧...