IBM Tivoli Endpoint Manager Server 9.1.x < 9.1.1117.0 OpenSSL Security Bypass

Medium Nessus Plugin ID 79335

Synopsis

The remote host is affected by a security bypass vulnerability.

Description

According to its self-reported version, the IBM Tivoli Endpoint Manager Server installed on the remote host uses a vulnerable OpenSSL library that contains a flaw in the processing of ChangeCipherSpec messages. The flaw allows an attacker to cause usage of weak keying material leading to simplified man-in-the-middle attacks.

Solution

Upgrade to Tivoli Endpoint Manager Server 9.1.1117.0 or later.

See Also

http://www-01.ibm.com/support/docview.wss?uid=swg21677842

https://www.openssl.org/news/secadv/20140605.txt

Plugin Details

Severity: Medium

ID: 79335

File Name: ibm_tem_9_1_1117_0.nasl

Version: 1.6

Type: remote

Family: Web Servers

Published: 2014/11/19

Updated: 2019/11/25

Dependencies: 66269

Risk Information

Risk Factor: Medium

CVSS Score Source: CVE-2014-0224

CVSS v2.0

Base Score: 5.8

Temporal Score: 4.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:N

Temporal Vector: CVSS2#E:F/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/a:ibm:tivoli_endpoint_manager

Required KB Items: www/BigFixHTTPServer

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2014/06/30

Vulnerability Publication Date: 2014/06/05

Exploitable With

Core Impact

Reference Information

CVE: CVE-2014-0224

BID: 67899

CERT: 978508