Guest

Preview Tool

Cisco Bug: CSCur29069 - Cisco Security Manager : evaluation of SSLv3 POODLE vulnerability

Last Modified

Mar 08, 2018

Products (1)

  • Cisco Security Manager

Known Affected Releases

4.7(0)

Description (partial)

Symptom:
Cisco Security Manager includes a version of OpenSSL that is affected by the vulnerability identified by the Common Vulnerability and Exposures (CVE) ID CVE-2014-3566.
This bug has been opened to address the potential impact on this product.

Conditions:
SSLv3 is enabled by default in all CSM versions.
All versions of CSM (Cisco Security Manager) till CSM 4.7 are affected.

Related Community Discussions

<key>CSCur29069</key> Where to find disable_sslv3.zip
Where do I find the zip file disable_sslv3.zip mentioned in bug <key>CSCur29069</key>?          2) Extract attached disable_sslv3.zip to CSCOpx\bin directory.   There's nothing attached to the bug and I also do not find it at CSM software downloads. Can anybody help me out?   Regards   Michael  
Latest activity: Dec 01, 2014
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.