Secunia Logo  


Secunia PSI WorldMap
 
Stonesoft Multiple Products OpenSSL Vulnerability
Secunia Advisory: SA11178
Release Date: 2004-03-22
Popularity: 5,636 views

Critical:
Moderately critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch

Software:Stonesoft StoneBeat FullCluster 2.x
Stonesoft StoneBeat FullCluster 3.x
Stonesoft StoneBeat SecurityCluster 2.x
Stonesoft StoneBeat WebCluster 2.x
Stonesoft StoneGate High Availability Firewall and VPN 2.x

Secunia CVSS-2 Score: Available in Secunia business solutions

Subscribe: Instant alerts on relevant vulnerabilities


Advisory Content (Page 2 of 3)[ 1 ] [ 2 ] [ 3 ]

Solution:
The vulnerability will be fixed in the following versions of the StoneGate engine:
* StoneGate engine 2.2.5 for Intel platform
* StoneGate engine 2.2.5 for IBM zSeries platform
* StoneGate engine 2.0.12 for SPARC platform

A patch will be released for all StoneBeat clustering products.

Restrict access to SSL-based services, allowing only trusted IP addresses to connect.

Original Advisory:
http://www.stonesoft.com/document/art/3123.html

Other References:
SA11139:
http://secunia.com/advisories/11139/

Change Page:
[ 1 ] [ 2 ] [ 3 ]



Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Adobe Flash Player Multiple Vulnerabilities // 187 views
2. Internet Explorer Charset Inheritance Cross-Site Scripting Vulnerability // 45 views
3. Sun Solaris Gnome PDF Viewer Multiple Vulnerabilities // 45 views
4. Sun Multiple Products XML Parsing Denial of Service // 35 views
5. network-manager-applet Certificate File Handling Security Issue // 35 views
6. Mozilla Thunderbird Floating Point Parsing Memory Corruption // 34 views
7. ZABBIX Multiple Vulnerabilities // 34 views
8. Sun Ray Server Software Desktop Session Handling Security Issue // 34 views
9. F5 Products TLS Session Renegotiation Plaintext Injection Vulnerability // 33 views
10. Million Pixel Script "pa" Cross-Site Scripting Vulnerability // 33 views