Cisco Bug: CSCuo22358 - Small cell recovery filesystem vulnerable to CVE-2014-0160 - Heartbleed
Last Modified
Dec 14, 2019
Products (1)
- Cisco Universal Small Cell 3000 Series
Known Affected Releases
V3.9.1
Description (partial)
Symptom: The Cisco Small Cell factory recovery root filesystem for Small Cell units includes a version of openssl that is affected by the vulnerability identified by the Common Vulnerability and Exposures (CVE) ID CVE-2014-0160. This bug has been opened to address the potential impact on this product. Conditions: Small Cell products configured to use the Small cell recovery root filesystem V2.99.4 or V2.99.7 during factory recovery. The Small cell recovery root filesystem is configured at a product level and can only be changed by the Cloudbase operations team.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Status
- Severity
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases