Guest

Preview Tool

Cisco Bug: CSCuo17116 - CRES is vulnerable to CVE-2014-0160 - aka Heartbleed

Last Modified

Dec 17, 2019

Products (1)

  • Cisco Registered Envelope Service

Known Affected Releases

4.0.0(CRESD)-0 4.1.6-019 4.2.0-0

Description (partial)

Symptom:
Cisco Registered Envelope Service includes a version of openssl that is affected by the vulnerability identified by the Common Vulnerability and Exposures (CVE) ID CVE-2014-0160.

This defect has been opened to document the change of public/private key pairs on the Cisco hosted CRES service.

Conditions:
Device with default configuration.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.