PT-2014-8581 · Mcafee · Mcafee File/Removable Media Protection+1

Publicado

2014-10-29

·

Atualizado

2014-11-19

·

CVE-2014-8518

CVSS v2.0

2.1

Baixa

VetorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions McAfee File and Removable Media Protection (FRP) version 4.3.0.x McAfee Endpoint Encryption for Files and Folders (EEFF) versions 3.2.x through 4.2.x
Description The issue concerns the use of a hard-coded salt in the encryption offsite access options of the affected software, making it easier for local users to obtain passwords via a brute force attack.
Recommendations For McAfee File and Removable Media Protection (FRP) version 4.3.0.x, update to a version that addresses the hard-coded salt issue. For McAfee Endpoint Encryption for Files and Folders (EEFF) versions 3.2.x through 4.2.x, update to a version that addresses the hard-coded salt issue. As a temporary workaround, consider restricting access to the removable media and CD and DVD encryption offsite access options until a patch is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-8518

Produtos afetados

Mcafee Endpoint Encryption For Files/Folders
Mcafee File/Removable Media Protection