QID 376103

QID 376103: Open Secure Sockets Layer (OpenSSL) Security Update

OpenSSL is a software library for applications that secure communications over computer networks against eavesdropping or need to identify the party at the other end.

Affected versions:
Prior to 1.1.1l

QID Detection logic:(Authenticated)
It will execute command OpenSSL version command to check the vulnerable version

Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Customers are advised to update to Openssl 1.1.1l or later Please refer the 20210824
    Vendor References

    CVEs related to QID 376103

    Software Advisories
    Advisory ID Software Component Link
    20210824 URL Logo www.openssl.org/news/secadv/20210824.txt