CVE-2022-34381

Dell BSAFE SSL-J version 7.0 and all versions prior to 6.5, and Dell BSAFE Crypto-J versions prior to 6.2.6.1 contain an unmaintained third-party component vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to the compromise of the impacted system. This is a Critical vulnerability and Dell recommends customers to upgrade at the earliest opportunity.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:dell:bsafe_ssl-j:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:bsafe_ssl-j:7.0:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:dell:bsafe_crypto-j:*:*:*:*:*:*:*:*

History

09 Feb 2024, 19:16

Type Values Removed Values Added
First Time Dell bsafe Ssl-j
Dell
Dell bsafe Crypto-j
CPE cpe:2.3:a:dell:bsafe_ssl-j:7.0:*:*:*:*:*:*:*
cpe:2.3:a:dell:bsafe_ssl-j:*:*:*:*:*:*:*:*
cpe:2.3:a:dell:bsafe_crypto-j:*:*:*:*:*:*:*:*
Summary
  • (es) Dell BSAFE SSL-J versión 7.0 y todas las versiones anteriores a 6.5, y las versiones Dell BSAFE Crypto-J anteriores a 6.2.6.1 contienen una vulnerabilidad de componente de terceros sin mantenimiento. Un atacante remoto no autenticado podría explotar esta vulnerabilidad, lo que comprometería el sistema afectado. Esta es una vulnerabilidad crítica y Dell recomienda a los clientes actualizar lo antes posible.
CVSS v2 : unknown
v3 : 9.1
v2 : unknown
v3 : 9.8
References () https://www.dell.com/support/kbdoc/en-us/000203278/dsa-2022-208-dell-bsafe-ssl-j-6-5-and-7-1-and-dell-bsafe-crypto-j-6-2-6-1-and-7-0-security-vulnerability - () https://www.dell.com/support/kbdoc/en-us/000203278/dsa-2022-208-dell-bsafe-ssl-j-6-5-and-7-1-and-dell-bsafe-crypto-j-6-2-6-1-and-7-0-security-vulnerability - Vendor Advisory
CWE NVD-CWE-Other

02 Feb 2024, 16:30

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-02 16:15

Updated : 2024-02-09 19:16


NVD link : CVE-2022-34381

Mitre link : CVE-2022-34381

CVE.ORG link : CVE-2022-34381


JSON object : View

Products Affected

dell

  • bsafe_crypto-j
  • bsafe_ssl-j
CWE
NVD-CWE-Other CWE-1329

Reliance on Component That is Not Updateable