First published: Thu Sep 12 2019(Updated: )
RSA BSAFE Micro Edition Suite versions prior to 4.1.6.3 (in 4.1.x) and prior to 4.4 (in 4.2.x and 4.3.x), are vulnerable to an Information Exposure Through an Error Message vulnerability, also known as a “padding oracle attack vulnerability”. A malicious remote user could potentially exploit this vulnerability to extract information leaving data at risk of exposure.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell Bsafe Micro-edition-suite | >=4.1.0<4.1.6.3 | |
Dell Bsafe Micro-edition-suite | >=4.2.0<4.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-3730 is a vulnerability in RSA BSAFE Micro Edition Suite versions prior to 4.1.6.3 and prior to 4.4.0 that allows information exposure through an error message, also known as a "padding oracle attack vulnerability".
CVE-2019-3730 affects Dell Bsafe Micro-edition-suite versions prior to 4.1.6.3 (in 4.1.x) and prior to 4.4.0 (in 4.2.x and 4.3.x).
The severity of CVE-2019-3730 is high with a CVSS score of 7.5.
To fix CVE-2019-3730, it is recommended to update Dell Bsafe Micro-edition-suite to version 4.1.6.3 or later (for 4.1.x) and version 4.4.0 or later (for 4.2.x and 4.3.x).
More information about CVE-2019-3730 can be found on the Dell support website at https://www.dell.com/support/kbdoc/000194054.