PT-2023-13366 · Dell · Bsafe Ssl-J

Published

2023-02-10

·

Updated

2024-01-22

·

CVE-2022-34364

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Dell BSAFE SSL-J versions prior to 6.5 Dell BSAFE SSL-J version 7.0
Description The issue is related to a debug message that reveals unnecessary information, potentially leading to the disclosure of sensitive information to a locally privileged user.
Recommendations For Dell BSAFE SSL-J versions prior to 6.5, update to version 6.5 or later to resolve the issue. For Dell BSAFE SSL-J version 7.0, consider disabling debug messages as a temporary workaround until a patch is available.

Fix

Exposure of Resource to Wrong Sphere

Weakness Enumeration

Related Identifiers

CVE-2022-34364

Affected Products

Bsafe Ssl-J