This script is Copyright (C) 2013 Tenable Network Security, Inc.
The remote host has an application installed that is affected by
multiple OpenSSL vulnerabilities.
The version of Juniper Steel-Belted Radius software installed on the
remote RedHat or CentOS host is affected by multiple OpenSSL
- The SSL 3.0 implementation in OpenSSL does not properly
initialize data structures for block cipher padding,
which could allow remote attackers to obtain sensitive
information by decrypting the padding data sent by an
SSL peer. (CVE-2011-4576)
- The Server Gated Cryptography (SGC) implementation in
OpenSSL does not properly handle handshake restarts,
which could allow remote attackers to cause a denial of
service condition. (CVE-2011-4619)
See also :
Updates are available from the vendor.
Risk factor :
Medium / CVSS Base Score : 5.0
CVSS Temporal Score : 4.3
Public Exploit Available : false
Nessus Plugin ID: 70165 ()
Bugtraq ID: 51281
CVE ID: CVE-2011-4576CVE-2011-4619
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.