CVE-2018-15769: High severity rsa bsafe vulnerability
RSA BSAFE Micro Edition Suite versions prior to 4.0.11 (in 4.0.x series) and versions prior to 4.1.6.2 (in 4.1.x series) contain a key management error issue. A malicious TLS server could potentially cause a Denial Of Service (DoS) on TLS clients during the handshake when a very large prime value is sent to the TLS client, and an Ephemeral or Anonymous Diffie-Hellman cipher suite (DHE or ADH) is used.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2018-15769?
CVE-2018-15769 is a vulnerability in RSA BSAFE Micro Edition Suite that could allow a malicious TLS server to cause a Denial of Service (DoS) on TLS clients during the handshake.
What is the severity of CVE-2018-15769?
CVE-2018-15769 has a severity rating of 7.5, which is considered high.
Which software versions are affected by CVE-2018-15769?
CVE-2018-15769 affects RSA BSAFE Micro Edition Suite versions prior to 4.0.11 (in 4.0.x series) and versions prior to 4.1.6.2 (in 4.1.x series).
How does CVE-2018-15769 exploit the vulnerability?
The vulnerability in CVE-2018-15769 is exploited by a malicious TLS server sending a very large prime value during the handshake, causing a DoS on TLS clients.
Are there any references for CVE-2018-15769?
Yes, you can find more information about CVE-2018-15769 at the following references: [link1], [link2], [link3].