[CISCO-SA-OPENSSL-2021-GHY28DJD] Multiple Vulnerabilities in OpenSSL Affecting Cisco Products: March 2021
Severity
High
CVEs
2
On March 25, 2021, the OpenSSL Project released a security advisory, OpenSSL Security Advisory [25 March 2021], ["https://www.openssl.org/news/secadv/20210325.txt"] that disclosed two vulnerabilities.
Exploitation of these vulnerabilities could allow an attacker to use a valid non-certificate authority (CA) certificate to act as a CA and sign a certificate for an arbitrary organization, user or device, or to cause a denial of service (DoS) condition.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssl-2021-GHY28dJd ["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssl-2021-GHY28dJd"]
- ID
- CISCO-SA-OPENSSL-2021-GHY28DJD
- Severity
- high
- URL
- https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-openssl-2021-GHY28dJd
- Published
-
2021-03-25T16:00:00
(3 years ago) - Modified
-
2021-03-25T16:00:00
(3 years ago) - Rights
- Cisco Systems, Inc.
- Other Advisories
-
- ALAS2-2021-1622
- ALAS2-2024-2502
- ALPINE:CVE-2021-3449
- ALPINE:CVE-2021-3450
- ALSA-2021:1024
- ASA-202103-10
- DSA-4875-1
- ELSA-2021-1024
- ELSA-2021-9151
- FEDORA-2021-cbf14ab8f9
- FREEBSD:38A4A043-E937-11EB-9B84-D4C9EF517024
- FREEBSD:56BA4513-A1BE-11EB-9072-D4C9EF517024
- FREEBSD:5A668AB3-8D86-11EB-B8D6-D4C9EF517024
- FREEBSD:C0C1834C-9761-11EB-ACFD-0022489AD614
- GLSA-202103-03
- MS:CVE-2021-3449
- MS:CVE-2021-3450
- openSUSE-SU-2021:0476-1
- openSUSE-SU-2021:1059-1
- openSUSE-SU-2021:1061-1
- openSUSE-SU-2021:2327-1
- openSUSE-SU-2021:2353-1
- RHSA-2021:1024
- RUSTSEC-2021-0055
- RUSTSEC-2021-0056
- SECADV-20210325-1
- SECADV-20210325-2
- SUSE-SU-2021:0954-1
- SUSE-SU-2021:0955-1
- SUSE-SU-2021:0955-2
- SUSE-SU-2021:2323-1
- SUSE-SU-2021:2326-1
- SUSE-SU-2021:2327-1
- SUSE-SU-2021:2353-1
- USN-4891-1
- USN-5038-1
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |