CVE-2022-24409

Dell BSAFE SSL-J contains remediation for a covert timing channel vulnerability that may be exploited by malicious users to compromise the affected system. Only customers with active BSAFE maintenance contracts can receive details about this vulnerability. Public disclosure of the vulnerability details will be shared at a later date.
Configurations

Configuration 1 (hide)

cpe:2.3:a:dell:bsafe_ssl-j:*:*:*:*:*:*:*:*

History

30 Sep 2022, 02:39

Type Values Removed Values Added
CVSS v2 : 7.5
v3 : 9.8
v2 : 7.5
v3 : 7.5

13 May 2022, 19:15

Type Values Removed Values Added
Summary Only customers with active BSAFE maintenance contracts can receive details about this vulnerability. Public disclosure of the vulnerability details will be shared at a later date. Dell BSAFE SSL-J contains remediation for a covert timing channel vulnerability that may be exploited by malicious users to compromise the affected system. Only customers with active BSAFE maintenance contracts can receive details about this vulnerability. Public disclosure of the vulnerability details will be shared at a later date.

02 Mar 2022, 18:26

Type Values Removed Values Added
First Time Dell bsafe Ssl-j
Dell
CWE NVD-CWE-Other
References (CONFIRM) https://www.dell.com/support/kbdoc/en-us/000196312/dsa-2022-023-dell-bsafetm-ssl-j-6-4-security-update-for-a-single-covert-timing-channelĀ - (CONFIRM) https://www.dell.com/support/kbdoc/en-us/000196312/dsa-2022-023-dell-bsafetm-ssl-j-6-4-security-update-for-a-single-covert-timing-channelĀ - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 7.5
v3 : 9.8
CPE cpe:2.3:a:dell:bsafe_ssl-j:*:*:*:*:*:*:*:*

23 Feb 2022, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-02-23 22:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-24409

Mitre link : CVE-2022-24409

CVE.ORG link : CVE-2022-24409


JSON object : View

Products Affected

dell

  • bsafe_ssl-j
CWE
NVD-CWE-Other CWE-385

Covert Timing Channel