Guest

Preview Tool

Cisco Bug: CSCvu68441 - PI39 - Nessus scan reported new rpm vulnerabilities

Last Modified

Aug 13, 2020

Products (1)

  • Cisco Prime Infrastructure

Known Affected Releases

3.9

Description (partial)

Symptom:
This product includes a version of the RHEL Kernel bind, microcode_ctl , kernel and squid that is affected by the vulnerabilities identified by the following Common Vulnerability and Exposures (CVE) IDs:

CVE-2020-8616, CVE-2020-8617, CVE-2020-0543, CVE-2020-0548, CVE-2020-0549, CVE-2017-18595, CVE-2019-19768, CVE-2020-10711, CVE-2019-12519, CVE-2019-12525, CVE-2020-11945 ,CVE-2020-10713

This bug was opened to address the potential impact on this product.

This product includes a version of Grub2 that is affected by the vulnerabilities identified by the following Common Vulnerability and Exposures (CVE) IDs:

    - CVE-2020-10713
    - CVE-2020-14308
    - CVE-2020-14309
    - CVE-2020-14310
    - CVE-2020-14311
    - CVE-2020-15705
    - CVE-2020-15706
    - CVE-2020-15707


This is a modification on the product to adopt new secure code best practices to enhance the security posture and resiliency of the product.
None.

Conditions:
Device with default configuration.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.