IBM Tivoli Endpoint Manager Server 9.1.x < 9.1.1117.0 OpenSSL Security Bypass

medium Nessus Plugin ID 79335

Synopsis

The remote host is affected by a security bypass vulnerability.

Description

According to its self-reported version, the IBM Tivoli Endpoint Manager Server installed on the remote host uses a vulnerable OpenSSL library that contains a flaw in the processing of ChangeCipherSpec messages. The flaw allows an attacker to cause usage of weak keying material leading to simplified man-in-the-middle attacks.

Solution

Upgrade to Tivoli Endpoint Manager Server 9.1.1117.0 or later.

See Also

http://www-01.ibm.com/support/docview.wss?uid=swg21677842

https://www.openssl.org/news/secadv/20140605.txt

Plugin Details

Severity: Medium

ID: 79335

File Name: ibm_tem_9_1_1117_0.nasl

Version: 1.6

Type: remote

Family: Web Servers

Published: 11/19/2014

Updated: 11/25/2019

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.7

CVSS v2

Risk Factor: Medium

Base Score: 5.8

Temporal Score: 4.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:N

CVSS Score Source: CVE-2014-0224

Vulnerability Information

CPE: cpe:/a:ibm:tivoli_endpoint_manager

Required KB Items: www/BigFixHTTPServer

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 6/30/2014

Vulnerability Publication Date: 6/5/2014

Exploitable With

Core Impact

Reference Information

CVE: CVE-2014-0224

BID: 67899

CERT: 978508