OpenSSL TLS 'heartbeat' Extension Multiple Information Disclosure Vulnerabilities
BID:66690
Info
OpenSSL TLS 'heartbeat' Extension Multiple Information Disclosure Vulnerabilities
| Bugtraq ID: | 66690 |
| Class: | Design Error |
| CVE: |
CVE-2014-0160 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 07 2014 12:00AM |
| Updated: | Jul 06 2016 02:40PM |
| Credit: | Neel Mehta |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Red Hat Enterprise Virtualization Hypervisor for RHEL 6 0 Red Hat Enterprise Linux Workstation Optional 6 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server Optional 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node Optional 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop Optional 6 Red Hat Enterprise Linux Desktop 6 Python Software Foundation Python 3.2.2 Python Software Foundation Python 3.1.1 Python Software Foundation Python 3.0.1 Python Software Foundation Python 2.7.2 Python Software Foundation Python 2.6.5 Python Software Foundation Python 2.6.2 Python Software Foundation Python 2.5.6 Python Software Foundation Python 2.5.5 Python Software Foundation Python 2.5.3 Python Software Foundation Python 2.5.2 Python Software Foundation Python 2.5.1 Python Software Foundation Python 2.4.5 Python Software Foundation Python 2.4.4 Python Software Foundation Python 2.4.3 Python Software Foundation Python 2.4.2 Python Software Foundation Python 2.4.1 Python Software Foundation Python 2.4 Python Software Foundation Python 2.3.6 Python Software Foundation Python 2.3.5 Python Software Foundation Python 2.3.4 Python Software Foundation Python 2.3.3 Python Software Foundation Python 2.3.2 Python Software Foundation Python 2.3.1 Python Software Foundation Python 2.3 Python Software Foundation Python 2.2.3 Python Software Foundation Python 2.2.2 Python Software Foundation Python 2.2.1 Python Software Foundation Python 2.2 Python Software Foundation Python 2.1.3 Python Software Foundation Python 2.1.2 Python Software Foundation Python 2.1.1 Python Software Foundation Python 2.1 Python Software Foundation Python 2.0.1 Python Software Foundation Python 2.0 Python Software Foundation Python 1.6.1 Python Software Foundation Python 1.6 Python Software Foundation Python 1.5.2 Python Software Foundation Python 3.3 Python Software Foundation Python 3.2 Python Software Foundation Python 3.1.2 Python Software Foundation Python 3.1 Python Software Foundation Python 2.7 Python Software Foundation Python 2.6 Python Software Foundation Python 2.5 Python Software Foundation Python 2.4 Oracle Enterprise Linux 6.2 Oracle Enterprise Linux 6 Opera Software Opera 11.10 OpenSSL Project OpenSSL 1.0.1c OpenSSL Project OpenSSL 1.0.1a OpenSSL Project OpenSSL 1.0.1 McAfee Security for Microsoft Exchange 7.6 McAfee ePolicy Orchestrator (ePO) 4.5 Kerio Kerio Control 7.1.0 Patch 1 Kerio Kerio Control 7.1.0 Ipswitch IMail Server 11.02 Ipswitch IMail Server 11.01 IBM WebSphere MQ 7.0.1 .2 IBM WebSphere MQ 7.0.1 .1 IBM WebSphere MQ 7.0 2 IBM WebSphere MQ 6.0.2 6 IBM WebSphere MQ 6.0.2 .9 IBM WebSphere MQ 6.0.2 .7 IBM WebSphere MQ 6.0.2 .6 IBM WebSphere MQ 6.0.2 .5 IBM WebSphere MQ 6.0.2 .4 IBM WebSphere MQ 6.0.2 .3 IBM WebSphere MQ 6.0.2 .2 IBM WebSphere MQ 6.0.2 .1 IBM WebSphere MQ 6.0.1 .1 IBM WebSphere MQ 6.0.1 IBM WebSphere MQ 5.3.1 IBM WebSphere MQ 5.3 IBM WebSphere MQ 7.0.1.5 IBM WebSphere MQ 7.0.1.4 IBM WebSphere MQ 7.0.1.3 IBM WebSphere MQ 7.0.1.0 IBM WebSphere MQ 7.0.0.1 IBM WebSphere MQ 7.0 IBM WebSphere MQ 6.0.2.8 IBM WebSphere MQ 6.0.2.11 IBM WebSphere MQ 6.0.2.10 IBM WebSphere MQ 6.0.2.0 IBM WebSphere MQ 6.0.1.0 IBM Tivoli Management Framework 4.1.1 IBM Rational ClearQuest 8.0.0.2 IBM Rational ClearQuest 8.0.0.1 IBM Rational ClearQuest 7.1.2.6 IBM Rational ClearQuest 7.1.2.2 IBM Rational ClearQuest 7.1.2.1 IBM Rational ClearQuest 7.1.2 IBM Rational ClearCase 7.1.2.2 IBM IBM Rational ClearQuest 8.0 IBM IBM Rational ClearQuest 7.1.2.5 IBM AIX 7.1 IBM AIX 6.1 IBM AIX 5.3 Gentoo Linux Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 Cisco Wireless Location Appliance 0 Cisco TelePresence Video Communication Server (VCS) 0 Cerberus Cerberus FTP Server 4.0.9.8 CentOS CentOS 6 Bluecat Networks Adonis (Firmware) 4.1 .43 Avaya Aura System Manager 6.2 Avaya Aura Session Manager 6.2.1 Avaya Aura Session Manager 6.2 Avaya Aura Presence Services 6.1.1 Attachmate Reflection X 14.0.5 Attachmate Reflection X 14.1 Attachmate Reflection X 14.0 Attachmate Reflection Suite for X 14.0.5 Attachmate Reflection for UNIX and OpenVMS 14.0.5 Attachmate Reflection for the Multi-Host Enterprise Pro 14.0.5 Attachmate Reflection for IBM 14.0.5 Attachmate Reflection for IBM 14 Attachmate Reflection for HP 14.0.5 Attachmate Reflection 14.1 Attachmate Reflection 14.0 SP1 Attachmate Reflection 14.0 Apple Airport Extreme 0 |
| Not Vulnerable: |
Cisco CSS11500 Content Services Switch Cisco ACE Module 0 Blue Coat Systems Policy Center 0 Blue Coat Systems PacketShaper 0 Blue Coat Systems Intelligence Center 0 Blue Coat Systems Director 0 |
Solution / Fix
OpenSSL TLS 'heartbeat' Extension Multiple Information Disclosure Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
OpenSSL TLS 'heartbeat' Extension Multiple Information Disclosure Vulnerabilities
References:
References:
- PCW Dispatcher update 6.0.207 with fix for CVE-2014-0160 OpenSSL TLS heartbeat (Parallels)
- [Rev 2] Tenable SecurityCenter 4.6 - 4.8 OpenSSL 'Heartbleed' Vulnerability (Tenable)
- [syslog-ng-announce] syslog-ng Premium Edition 5 LTS (5.0.4a) has been released (Balabit)
- 11.8.3 Update 1 now available to fix Heartbleed vulnerabilty in Fireware XTM OSr (WatchGuard Security Center)
- 2014-04 Out of Cycle Security Bulletin: Multiple products affected by OpenSSL 'H (Juniper)
- Access Server release notes for 2.0.6 (changes made since 2.0.5) (OpenVPN Technologies)
- Advisory: Critical vulnerability found in OpenSSL affecting Sophos products (Sophos )
- AIX OpenSSL Heartbleed Vulnerability CVE-2014-0160 (IBM)
- Artix OpenSSL Heartbleed vulnerability fix available (Artix)
- Attachmate Security Update for OpenSSL 'Heartbleed' Vulnerability CVE-2014-0160 (Attachmate )
- Attachmate Security Update for OpenSSL 'Heartbleed' Vulnerability CVE-2014-0160 (Attachmate)
- Bitcoin Core version 0.9.1 released (The Bitcoin Foundation)
- BSRT-2014-005 Information disclosure vulnerability in OpenSSL affects BlackBerry (BlackBerry)
- Cerberus FTP Server Release Notes (Cerberus)
- CERT VU#23720951 Vulnerability Advisory 04.11.2014 (Extreme Networks)
- Changelog for Tomcat Native (Apache)
- Check Point response to OpenSSL vulnerability (CVE-2014-0160) (Check Point)
- Chef Server 11.0.12 Release (Chef Software)
- Chef Server Heartbleed (CVE-2014-0160) Releases (Chef Software)
- CVE-2014-0160 (LibreOffice )
- CVE-2014-0160: Gamestream OpenSSL Vulnerability (NVIDIA)
- Dell SonicWALL Notice Concerning CVE-2014-0160 OpenSSL Large Heartbeat Response (SonicWALL)
- Download PostgreSQL (PostgreSQL)
- Enterprise Chef 1.4.9 Release (Chef Software)
- Enterprise Chef 11.1.3 Release (Chef Software)
- Extreme Networks Advisory (Extreme Networks)
- FileMaker Server and the Heartbleed bug (FileMaker)
- Flex System Manager (FSM) and compatible IBM Systems Director agents are affecte (IBM)
- Heartbeat SSL/TLS Fix for NowSMS (Nowsms)
- Heartbleed and other heartaches (Opera Software)
- HPSBMU02994 rev.2 - HP BladeSystem c-Class Onboard Administrator (OA) running Op (HP)
- HPSBMU02995 rev.4 - HP Software HP Service Manager, Asset Manager, UCMDB Browser (HP)
- HPSBMU03029 rev.1 - HP Insight Control Server Migration running OpenSSL, Remote (HP)
- IBM Systems Director Storage Control is affected by vulnerabilities in OpenSSL ( (IBM)
- Impact of OpenSSL "Heartbleed" Vulnerability to NetBackup & NetBackup Appliances (Symantec)
- Important Security Update: Heartbleed Bug (atvise)
- Information Disclosure Vulnerability in OpenSSL (Heartbleed) (Fortinet)
- Information on Norton products and the Heartbleed vulnerability (Symantec)
- Intel(R) Expressway Service Gateway �?? Heartbleed Security Update (Intel)
- Is Symantec Endpoint Protection affected by the Heartbleed OpenSSL vulnerability (Symantec)
- Mail Express Homepage (globalSCAPE)
- Metasploit 4.9.2 (Update 2014040906) (brandont)
- MH01426 - Fix Pack 01AL770_076_032 (IBM)
- MH01427 - Fix Pack 01AM770_076_032 (IBM)
- Microsoft security advisory: Update for vulnerability in Juniper Networks Window (Microsoft)
- mod_spdy Homepage (Google)
- Multiple vulnerabilities in OpenSSL (Oracle)
- NoMachine version 4.2.19 now available (NoMachine)
- OpenSSL 1.0.1 library (Heartbleed) vulnerability (Aruba Networks)
- OpenSSL 1.0.1 library's 'Heart bleed' vulnerability - CVE-2014-0160 (RUCKUS WIRELESS)
- OpenSSL Heartbeat 'Heartbleed' Vulnerability (Lexmark)
- OpenSSL HeartBleed and SQL Anywhere (SAP)
- OpenSSL Heartbleed Security Bug -- CVE-2014-0160 (BMC Software)
- OpenSSL Heartbleed Vulnerability (CA)
- OpenSSL Homepage (OpenSSL)
- OpenSSL security bug (The Heartbleed Bug) may impact Symantec Cluster Server (VC (Symantec)
- OpenSSL Security Vulnerability - aka. 'Heartbleed Bug' - CVE-2014-0160 - Securit (D-Link)
- OpenSSL vulnerabilities (OpenSSL)
- OpenSSL Vulnerability (Heartbleed bug) for SAP/Sybase) (Sybase)
- OpenSSL vulnerability CVE-2014-0160 (F5 Networks)
- OpenVPN 2.3.3 -- released on 2014.04.09 (Change Log) (OpenVPN)
- OpenVPN 2.3.4 Downloads (OpenVPN )
- Opera 12.17 out (Opera Software)
- Opera 12.17 Release notes (Opera Software)
- Pexip CVE-2014-0160 (Pexip)
- pfSense 2.1.2 Release Now available (Electric Sheep Fencing LLC)
- Proofpoint: Security, Compliance and the Cloud (Proofpoint)
- Proventia Network Security Controller is affected by multiple OpenSSL vulnerabil (IBM)
- Python 3.4.1 (Python Software Foundation)
- Python Heartbleed (CVE-2014-0160) Proof of Concept (Jared Stafford)
- SCADA Data Gateway (Triangle MicroWorks)
- Security Advisory on Critical Updates to vFabricWeb Server (VMware)
- Security Bulletin: AIX is affected by a vulnerability in OpenSSL (CVE-2014-0160) (IBM)
- Security Bulletin: IBM ToolsCenter Suite is affected by vulnerabilities in OpenS (IBM)
- Security Updates and Reflection (Attachmate)
- Security vulnerabilities have been discovered in the OpenSSL libraries which a c (IBM)
- Software Patch: OpenSSL Hotfix for FileMaker Server 13.0v1 (FileMaker)
- Splunk 6.0.3 addresses two vulnerabilities - April 10, 2014 (Splunk )
- Stunnel change log Version 5.01 (Stunnel)
- stunnel: ChangeLog (Stunnel)
- SurgeMail Change History - Detailed! (NetWin)
- Symantec Product List Heartbleed (Symantec)
- Synology DiskStation Manager Version: 5.0-4458 Update 1 Change Log (Synology )
- The Heartbleed Bug (Codenomicon)
- The Heartbleed OpenSSL Vulnerability and Mail Express (globalSCAPE)
- Tor Browser 3.5.4 is Released (Tor Browser)
- UPDATED: Ipswitch�??s Response to Heartbleed SSL Vulnerability (Ipswitch)
- Version 0.7.4 of Orthanc (Orthanc)
- Version 8.2.2 patch2 April 9, 2014 (Kerio )
- WinSCP Version History (WinSCP)
- (ICSA-14-126-01A) ABB Relion 650 Series OpenSSL Vulnerability (Update A) (US-CERT)
- [security bulletin] HPSBMU03009 rev.2 - HP CloudSystem Foundation and Enterpris (HP)
- [security bulletin] HPSBMU03028 rev.1 - HP Matrix Operating Environment and Clo (HP)
- [security bulletin] HPSBMU03032 rev.1 - HP Virtual Connect Firmware Smart Compo (HP)
- [security bulletin] HPSBMU03033 rev.1 - HP Insight Control Software Components (HP)
- [security bulletin] HPSBMU03037 rev.1 - HP Multimedia Service Environment (MSE) (HP)
- [security bulletin] HPSBST03004 rev.1 - HP IBRIX X9320 Storage running OpenSSL, (HP)
- Citrix Security Advisory for CVE-2014-0160, aka the Heartbleed vulnerability (citrix)
- HPSBMU02994 rev.1 - HP BladeSystem c-Class Onboard Administrator (OA) running O (HP)
- HPSBMU02997 rev.1 - HP Smart Update Manager (SUM) running OpenSSL, Remote Discl (HP)
- HPSBMU03030 rev.1 - HP Service Pack for ProLiant (SPP) Bundled Software running (HP)
- IBM Initiate Master Data Service, IBM InfoSphere Master Data Management Standar (IBM)
- Multiple Intel Software Products and API Services impacted by CVE-2014-0160 (Intel)
- OpenSSL Heartbeat / heart bleed Vulnerability, VU#720951 / CVE-2014-0160 (Global Technology Associates)
- Vulnerability in License Server and Snap-in for Desktop Studio, aka Heartbleed (Citrix)
- (ICSA-14-105-02) Innominate mGuard OpenSSL HeartBleed Vulnerability (US-CERT)
- (ICSA-14-105-03) Siemens Industrial Products OpenSSL HeartBleed Vulnerability (US-CERT)
- (ICSA-14-114-01) Certec atvise scada OpenSSL Heartbleed Vulnerability (US-CERT)
- [security bulletin] HPSBGN03011 rev.1 - HP IceWall MCRP running OpenSSL on Red H (HP)
- [security bulletin] HPSBHF03293 rev.1 (Seclist)
- 2014-04 Out of Cycle Security Bulletin: Multiple products affected by OpenSSL "H (Juniper)
- 2014-04 Out of Cycle Security Bulletin: Multiple products affected by OpenSSL "H (Juniper Networks)
- �??Heartbleed�?? (CVE-2014-0160) Vulnerability in OpenSSL (Oracle)
- ADTRAN Security Advisory (ADTRAN)
- Advisory (ICSA-14-105-03B) Siemens Industrial Products OpenSSL Heartbleed Vulner (CERT)
- Advisory (ICSA-14-126-01) (CERT)
- Advisory (ICSA-14-135-04) Unified Automation OPC SDK OpenSSL Vulnerability (CERT)
- Advisory (ICSA-14-135-05) OpenSSL Vulnerability (CERT)
- AirPort Base Station Firmware Update 7.7.3 (Apple)
- AppScan Source is affected by a vulnerability in OpenSSL (CVE-2014-0160) (IBM)
- Barracuda products secured from OpenSSL heartbleed vulnerability (Barracuda Networks)
- BlackBerry Link OpenSSL TLS/DTLS Heartbeat Two Information Disclosure Vulnerabil (BlackBerry )
- BladeCenter Advanced Management Module (AMM) is affected by vulnerabilities in O (IBM)
- Changes in MySQL 5.6.18 (2014-04-11) (Oracle)
- Citrix XenMobile Security Advisory for �??Heartbleed�?� (Citrix)
- FCM 4.1 UNIX and VMware is affected by a vulnerability in OpenSSL (IBM)
- FlashSystem 840 & V840 vulnerability to CVE-2014-0160 (OpenSS (IBM)
- Flex System V7000 systems are affected by vulnerabilities in OpenSSL (IBM)
- FreeBSD-SA-14:06.openssl (FreeBSD)
- FSC-2014-1: Notice on OpenSSL 'Heartbleed' Vulnerability (F-Secure)
- Google Sevices Updated to Address OpenSSL (Google Security Blog)
- GPFS V3.4 and V3.5 for AIX, Linux on Power and Linux on x86 are affected by vuln (IBM)
- GPFS V3.5 for Windows is affected by vulnerabilities in OpenSSL (CVE-2014-0160 a (IBM)
- Heartbleed Bug with Open SSL (Dell)
- Heartbleed Issue (Tableau Software)
- Heartbleed Notifications �?? IBM Algo Risk Service on Cloud Notification (CVE-2014 (IBM)
- HIRT-PUB14005: OpenSSL TLS heartbeat extension read overrun issue in Hitachi pro (Hitachi)
- HPSBGN03008 rev.1 - HP Software Service Manager, "HeartBleed" OpenSSL Vulnerabil (HP)
- HPSBGN03010 rev.1 - HP Software Server Automation, "HeartBleed" OpenSSL Vulnerab (HP)
- HPSBGN03010 rev.2 - HP Software Server Automation, "HeartBleed" OpenSSL Vulnerab (HP)
- HPSBHF03021 rev.1 - HP Thin Client with ThinPro OS or Smart Zero Core Services, (HP)
- HPSBHF03136 rev.1 - HP TippingPoint NGFW running OpenSSL, Remote Disclosure of I (HP)
- HPSBMU02994 rev.1 - HP BladeSystem c-Class Onboard Administrator (OA) running Op (HP)
- HPSBMU02994 rev.3 - HP BladeSystem c-Class Onboard Administrator (OA) running Op (HP)
- HPSBMU02995 rev.1 - HP Software HP Service Manager, Asset Manager, UCMDB Browser (HP)
- HPSBMU02995 rev.5 HP Software HP Service Manager, Asset Manager, UCMDB Browser (HP)
- HPSBMU02995 rev.7 - HP Software HP Service Manager, Asset Manager, UCMDB Browser (HP)
- HPSBMU02997 rev.2 - HP Smart Update Manager (SUM) running OpenSSL, Remote Disclo (HP)
- HPSBMU02998 rev.1 - HP System Management Homepage (SMH) running OpenSSL on Linux (HP)
- HPSBMU02999 rev.1 - HP Software Autonomy WorkSite Server (On-Premises Software), (HP)
- HPSBMU03012 rev.1 - HP Insight Management VCEM Web Client SDK (VCEMSDK) running (HP)
- HPSBMU03013 rev.1 - WMI Mapper for HP Systems Insight Manager running OpenSSL, R (HP)
- HPSBMU03017 rev.1 - HP Software Connect-IT running OpenSSL, Remote Disclosure of (HP)
- HPSBMU03017 rev.2 - HP Software Connect-IT running OpenSSL, Remote Disclosure of (HP)
- HPSBMU03018 rev.1 - HP Software Asset Manager running OpenSSL, Remote Disclosure (HP)
- HPSBMU03018 rev.2 - HP Software Asset Manager running OpenSSL, Remote Disclosure (HP)
- HPSBMU03019 rev.1 - HP Software UCMDB Browser and Configuration Manager running (HP)
- HPSBMU03020 rev.1 - HP Version Control Agent (VCA) and Version Control Repositor (HP)
- HPSBMU03022 rev.3 - HP Systems Insight Manager (SIM) Bundled Software running Op (HP)
- HPSBMU03023 rev.1 - HP BladeSystem c-Class Virtual Connect Support Utility (VCSU (HP)
- HPSBMU03024 rev.1 - HP Insight Control Server Deployment on Linux and Windows ru (HP)
- HPSBMU03025 rev.1 - HP Diagnostics running OpenSSL, Remote Disclosure of Informa (HP)
- HPSBMU03040 rev.1 - HP LoadRunner & HP Performance Center, running OpenSSL, Remo (HP)
- HPSBMU03044 rev.1 - HP Business Process Monitor, running OpenSSL, Remote Disclos (HP)
- HPSBPI03014 rev.1 - HP LaserJet Pro MFP Printers, HP Color LaserJet Pro MFP Prin (HP)
- HPSBPI03031 rev.1 - HP Officejet Pro X Printers, Certain Officejet Pro Printers, (HP)
- HPSBST03000 rev.1 - HP StoreEver ESL G3 Tape Library and Enterprise Library LTO- (HP)
- HPSBST03000 rev.1 - HP StoreEver ESL G3 Tape Library and Enterprise Library LTO- (HP)
- HPSBST03015 rev.1 - HP 3PAR OS running OpenSSL, Remote Disclosure of Information (HP)
- HPSBST03016 rev.1 - HP P2000 G3 MSA Array Systems, HP MSA 2040 Storage, and HP M (HP)
- HPSBST03027 rev.1 - HP StoreVirtual 4000 Storage and HP P4000 G2 Storage using H (HP)
- http://www-01.ibm.com/support/docview.wss?uid=swg24037392 (IBM)
- IBM Endpoint Manager 9.1.1065 �?? OpenSSL Vulnerability Update (CVE-2014-0160) (IBm)
- IBM Endpoint Manager Software Use Analysis - OpenSSL Heartbleed vulnerability (C (IBM)
- IBM N Series Data ONTAP SMI-S Agent is affected by vulnerability in OpenSSL (IBM)
- IBM Netezza Platform Software is affected by a vulnerability in OpenSSL (IBM)
- IBM PureData System for Operational Analytics is affected by vulnerabilities in (IBM)
- IBM Sametime Community Server version 9 HF1 and version 9 Limited Use are affect (IBM)
- IBM Sametime Server CVE-2014-0160 (IBM)
- IBM Security Access Manager for Web v8.0 Front End Load Balancer susceptible to (IBM)
- IBM Security AppScan Enterprise Manual Explorer plugin is affected by the vulner (IBM)
- IBM Smart Analytics System 5600 V1 is affected by vulnerabilities in OpenSSL (CV (IBM)
- IBM Smart Analytics System 5600 V2 is affected by vulnerabilities in OpenSSL (CV (IBM)
- IBM Smart Analytics System 5600 V3 is affected by vulnerabilities in OpenSSL (CV (IBM)
- IBM Smart Analytics System 5600 V3 is affected by vulnerabilities in OpenSSL (CV (IBM)
- IBM Smart Analytics System 7600 is affected by vulnerabilities in OpenSSL (CVE-2 (IBM)
- IBM Smart Analytics System 7700 is affected by vulnerabilities in OpenSSL (CVE-2 (IBM)
- IBM Sterling Connect:Express for UNIX is affected by vulnerabilities in OpenSSL (IBM)
- IBM Tealeaf Customer Experience (CX) is affected by a vulnerability in OpenSSL ( (IBM)
- IBM Tivoli Netcool/Portal vulnerable to CVE-2014-0160 & CVE-2014-0076 (IBM)
- IBM WebSphere Hypervisor Edition on zLinux for SmartCloud Orchestrator is affect (IBM)
- IBM WebSphere MQ (Paho MQTT and HP-NSS clients) are affected by a vulnerability (IBM)
- IBM® MessageSigh & TLS Heartbleed (CVE-2014-0160) (IBM)
- ICS-ALERT-14-099-01A Situational Awareness Alert for OpenSSL Vulnerability (UPDA (CERT)
- ICSA-14-128-01 - Digi International OpenSSL Vulnerability (ICS-CERT)
- ICSA-15-344-01: Advantech EKI Vulnerabilities (ICS CERT)
- Impact of the OpenSSL Heartbleed Vulnerability on SecureCRT, SecureFX, and the V (vandyke)
- Impact on the development of our product OpenSSL vulnerability (Soliton)
- Impact on the product WebSAM WebSAM OpenSSL vulnerability (WebSAM)
- Innominate mGuard OpenSSL HeartBleed Vulnerability (Update A) (ICS CERT)
- Junos Pulse/IC (UAC): Details on fixes for OpenSSL "Heartbleed" issue (CVE-2014- (Juniper Networks)
- Junos Pulse/SA (SSLVPN): Details on fixes for OpenSSL "Heartbleed" issue (CVE-20 (Juniper)
- Kaspersky Internet Security 2014 release info (Kaspersky )
- Kerio Connect Release History (Kerio)
- McAfee Security Bulletin �?? OpenSSL Heartbleed vulnerability patched in McAfee pr (McAfee)
- Microsoft Security Advisory 2962393: Update for Vulnerability in Juniper Network (Microsoft)
- Missing bounds checking in OpenSSL's implementation of the TLS/DTLS heartbeat ex (OpenBSD)
- Multiple vulnerabilities in the IBM SDK Java Technology Edition component of IBM (IBM)
- Openssl "HeartBleed" attack (SUSE-SA:2014:002) (SUSE)
- OpenSSL Heartbeat Extension Vulnerability in Multiple Cisco Products (Cisco)
- OpenSSL heartbeat information disclosure (CVE-2014-0160) (Blue Coat Systems)
- OpenSSL Heartbleed Bug (hMailServer)
- OpenSSL Heartbleed Vulnerability in Relion 650 series Ver. 1.3.0 ABB - VU - PSAC (ABB)
- OpenSSL Security Bug - Heartbleed / CVE-2014-0160 (Oracle)
- OpenSSL Security Bug - Heartbleed CVE-2014-0160 (Oracle)
- openssl security update (CVE-2014-0160) (Avaya Inc.)
- OpenSSL Vulnerability CVS-2014-0160 (Heartbleed) (WebSense)
- OpenSSL Vulnerability CVS-2014-0160 (Heartbleed) (WebSense)
- Power Hardware Management Console is affected by vulnerabilities in OpenSSL (CVE (IBM)
- Power Systems and OpenSSL Heart bleed vulnerability (IBM)
- QNAP Releases System Updates to Fix Heartbleed OpenSSL Vulnerability (qNAP)
- Rational Build Forge is affected by vulnerabilities in OpenSSL (IBM)
- Rational ClearCase affected by vulnerability in OpenSSL (CVE-2014-0160) (IBM)
- Rational ClearCase iFix 1 (7.1.2.13-iFix01) for 7.1.2.13 (IBM)
- Rational ClearCase iFix 1 (8.0.0.10-iFix01) for 8.0.0.10 (IBM)
- Rational ClearCase iFix 1 (8.0.1.3-iFix01) for 8.0.1.3 (IBM)
- Rational ClearQuest affected by vulnerability in OpenSSL (CVE-2014-0160) (IBM)
- Rational ClearQuest iFix 1 (7.1.2.13-iFix01) for 7.1.2.13 (IBM)
- Rational ClearQuest iFix 1 (8.0.0.10-iFix01) for 8.0.0.10 (IBM)
- Rational ClearQuest iFix 1 (8.0.1.3-iFix01) for 8.0.1.3 (IBM)
- Rational RequisitePro affected by vulnerability in OpenSSL (CVE-2014-0160) (IBM)
- Rational RequisitePro Interim Fix 1 for 7.1.2.13 (IBM)
- Rational RequisitePro Interim Fix 1 for 7.1.4.3 (IBM)
- Rational Team Concert is affected by vulnerabilities in OpenSSL (CVE-2014-0160 a (IBM)
- Schneider Electric Wonderware Intelligence Security Patch for OpenSSL Vulnerabil (ICS-CERT)
- SEC Consult Vulnerability Lab Security Advisory < 20140423-0 > (SEC Consult Vulnerability Lab)
- Security Advisory Important: openssl security update (Red Hat)
- Security Advisory Important: rhevm-spice-client security update (Red Hat)
- Security Advisory-OpenSSL Heartbeat Extension vulnerability (Huawei)
- Security Advisory-OpenSSL Heartbeat Extension vulnerability (Heartbleed bug) on (Huawei Technologies)
- Security Bulletin: DS8870 Release 7.2 is affected by a vulnerability in OpenSSL (IBM)
- Security Bulletin: Flex System Chassis Management Module (CMM) is affected by vu (IBM)
- Security Bulletin: Flex System Integrated Management Module 2 (IMM2) is affected (IBM)
- Security Bulletin: IBM Campaign v9.1 and IBM Contact Optimization v9.1 are affec (IBM)
- Security Bulletin: IBM DS8870 Release 7.2 is affected by an additional vulnerabi (IBM)
- Security Bulletin: IBM InfoSphere Guardium System x/Flex Systems appliances are (IBM)
- Security Bulletin: IBM N Series OnCommand Unified Manager Core Package is affect (IBM)
- Security Bulletin: IBM Netezza Platform Software is affected by a vulnerability (IBM)
- Security Bulletin: IBM SDN for Virtual Environments is affected by a vulnerabili (IBM)
- Security Bulletin: IBM SDN for Virtual Environments is affected by a vulnerabili (IBM)
- Security Bulletin: IBM Security Network Intrusion Prevention System is affected (IBM)
- Security Bulletin: IBM Security Network Protection System is affected by vulnera (IBM)
- Security Bulletin: IBM Security Privileged Identity Manager (ISPIM) is affected (IBM)
- Security Bulletin: IBM Security Proventia Network Active Bypass is affected by v (IBM)
- Security Bulletin: IBM Sterling B2B Integrator and IBM Sterling File Gateway are (IBM)
- Security Bulletin: IBM Storwize V7000 Unified systems are affected by vulnerabil (IBM)
- Security Bulletin: IBM Systems Director Editions is affected by vulnerabilities (IBM)
- Security Bulletin: IBM Tivoli Composite Application Manager for Transactions is (IBM)
- Security Bulletin: IBM Tivoli Netcool System Service Monitors/Application Servic (IBM)
- Security Bulletin: IBM Upward Integration Modules (UIM) is affected by vulnerabi (IBM)
- Security Bulletin: IBM WebSphere Cast Iron Solution is affected by a vulnerabili (IBM)
- Security Bulletin: IBM Worklight is affected by a vulnerability in OpenSSL (CVE- (IBM)
- Security Bulletin: IBM XIV Vulnerability to CVE-2014-0160 (OpenSSL heartbleed) (IBM)
- Security Bulletin: License Metric Tool 9.0 (CVE-2014-0160) (IBM)
- Security Bulletin: Power Systems Firmware is affected by vulnerability in OpenSS (IBM)
- Security Bulletin: SAN Volume Controller and Storwize Family systems are affecte (IBM)
- Security Bulletin: SmartCloud Entry is affected by vulnerabilities in OpenSSL (C (IBM)
- Security Bulletin: SmartCloud Provisioning is affected by a vulnerability in Ope (IBM)
- Security Bulletin: Tivoli Management Framework is affected by vulnerabilities in (IBM)
- Security Bulletin: Tivoli Remote Control is affected by vulnerabilities in OpenS (IBM)
- Security Bulletin: Tivoli Storage Productivity Center is affected by vulnerabili (IBM)
- Security Bulletin: TS3000(TSSC) is affected by a vulnerability in OpenSSL (CVE-2 (IBM)
- Security Bulletin: TS3310 is affected by a vulnerability in OpenSSL (CVE-2014-01 (IBM)
- Security vulnerability CVE-2014-0160 OpenSSL heartbleed (Asperasoft)
- Siemens Industrial Products OpenSSL Heartbleed Vulnerability (Update A) (ICS-CERT)
- Situational Awareness Alert for OpenSSL Vulnerability (UPDATE B) (ICS CERT)
- Situational Awareness Alert for OpenSSL Vulnerability (Update C) (ICS-CERT)
- Situational Awareness Alert for OpenSSL Vulnerability (Update D) (CERT)
- Situational Awareness Alert for OpenSSL Vulnerability (Update E) (ICS-CERT)
- Situational Awareness Alert for OpenSSL Vulnerability (Update F) (ICS-CERT)
- SmartCloud Orchestrator is affected by a vulnerability in OpenSSL (CVE-2014-0160 (IBM)
- SmartCloud Provisioning 2.3 FP1 IFIX1 (SCP2.3.0.1 IFIX1) (IBM)
- SmartCloud Provisioning is affected by a vulnerability in OpenSSL (CVE-2014-0160 (IBM)
- Sophos UTM Manager and OpenSSL Vulnerability (Sophos)
- SYM16-007: Security Advisories Relating to Symantec Products - Symantec Messagin (Symantec)
- System x Integrated Management Module 2 (IMM2) is affected by vulnerabilities in (IBM)
- The Heartbeat OpenSSL Vulnerability (Xerox)
- The Heartbleed Bug (Rumpus)
- The IBM FlashSystem 840 & IBM FlashSystem V840 products are affected by vulnerab (IBM)
- Tivoli Endpoint Manager for Remote Control is affected by OpenSSL vulnerabilitie (IBM)
- Tivoli Management Framework and CVE-2014-0160 (Heartbleed vulnerability) (IBM)
- TLS heartbeat read overrun (OpenSSL)
- Trend Micro(TM) OfficeScan(TM) 11.0 Critical Patch - Server Build 1044 (Trend Micro)
- UTM Up2Date 9.111 Released �?? FIX for OpenSSL vulnerability (Heartbleed) (Sophos)
- VMware product updates address OpenSSL security vulnerabilities (VMWare)
- VMware product updates address OpenSSL security vulnerabilities (VMSA-2014-0004. (Avaya)
- VMware product updates address OpenSSL security vulnerabilities (VMSA-2014-0004. (Avaya)
- VU#720951 OpenSSL heartbeat information disclosure (CERT)