Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> SuSE Local Security Checks >> SUSE-SA:2005:061: openssl


Vulnerability Assessment Details

SUSE-SA:2005:061: openssl

Vulnerability Assessment Summary
Check for the version of the openssl package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory SUSE-SA:2005:061 (openssl).


The openssl cryptographic libraries have been updated to fix
a protocol downgrading attack which permits a man-in-the-middle
attacker to force the usage of SSLv2. This happens due to the
work-around code of SSL_OP_MSIE_SSLV2_RSA_PADDING which is included
in SSL_OP_ALL (which is commonly used in applications). (CVE-2005-2969)

Additionally this update adds the Geotrusts Equifax Root1 CA certificate
to permit correct certification against Novell Inc. websites and
services. The same CA is already included in Mozilla, KDE, and curl,
which use separate certificate stores.


Solution : http://www.suse.de/security/advisories/2005_61_openssl.html
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Tenable Network Security

Cables, Connectors


TRUENAS READY SERVER HP Proliant MicroServer Gen8, Xeon E3 2.30GHz 4 HDD SLOTS picture

TRUENAS READY SERVER HP Proliant MicroServer Gen8, Xeon E3 2.30GHz 4 HDD SLOTS

$389.99



HP PROLIANT MICROSERVER GEN8 16GB RAM XEON 2.3GHZ T13-F18 picture

HP PROLIANT MICROSERVER GEN8 16GB RAM XEON 2.3GHZ T13-F18

$250.00



HPE ProLiant MicroServer Gen10 Plus (Intel Xeon E2224, 16GB) Server w/ 240GB SSD picture

HPE ProLiant MicroServer Gen10 Plus (Intel Xeon E2224, 16GB) Server w/ 240GB SSD

$849.95



HPE HP iLO2 3 4 Advanced Key Lifetime License Microserver ProLiant Server Gen789 picture

HPE HP iLO2 3 4 Advanced Key Lifetime License Microserver ProLiant Server Gen789

$6.90



HP Proliant MicroServer Gen8;  8GB RAM NO HDD picture

HP Proliant MicroServer Gen8;  8GB RAM NO HDD

$250.00



HPE microserver Gen8 Update Firmware iLO4 + BIOS System Latest HP Server FAST⚡️✅ picture

HPE microserver Gen8 Update Firmware iLO4 + BIOS System Latest HP Server FAST⚡️✅

$89.99



HP Proliant MicroServer Gen8, Xeon E3-1220L V2 2.30GHz 2x1TB HDDs 16GB Ram picture

HP Proliant MicroServer Gen8, Xeon E3-1220L V2 2.30GHz 2x1TB HDDs 16GB Ram

$389.94



HPE ProLiant MicroServer Gen10 AMD Opteron X3216 8GB RAM No HDDs picture

HPE ProLiant MicroServer Gen10 AMD Opteron X3216 8GB RAM No HDDs

$550.00



Server Station Supermicro H8SGL picture

Server Station Supermicro H8SGL

$1395.00



Used Super Micro X8DT6 EMC Isilon NL400 System Motherboard No RAM, CPU, Cables picture

Used Super Micro X8DT6 EMC Isilon NL400 System Motherboard No RAM, CPU, Cables

$100.99



Discussions

No Discussions have been posted on this vulnerability.