PT-2014-8581 · Mcafee · Mcafee File/Removable Media Protection+1
Publicado
2014-10-29
·
Atualizado
2014-11-19
·
CVE-2014-8518
CVSS v2.0
2.1
Baixa
| Vetor | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
McAfee File and Removable Media Protection (FRP) version 4.3.0.x
McAfee Endpoint Encryption for Files and Folders (EEFF) versions 3.2.x through 4.2.x
Description
The issue concerns the use of a hard-coded salt in the encryption offsite access options of the affected software, making it easier for local users to obtain passwords via a brute force attack.
Recommendations
For McAfee File and Removable Media Protection (FRP) version 4.3.0.x, update to a version that addresses the hard-coded salt issue.
For McAfee Endpoint Encryption for Files and Folders (EEFF) versions 3.2.x through 4.2.x, update to a version that addresses the hard-coded salt issue.
As a temporary workaround, consider restricting access to the removable media and CD and DVD encryption offsite access options until a patch is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Mcafee Endpoint Encryption For Files/Folders
Mcafee File/Removable Media Protection