The OpenSSL Vulnerability: A Cato Networks Labs Update
ID: f1e33106-97a4-5f07-a163-fdfe6e87f3c7
STIX ID: report--f1e33106-97a4-5f07-a163-fdfe6e87f3c7
Feed Name: Cato Networks
Threat Score
The report describes two high-severity OpenSSL vulnerabilities (CVE-2022-3602 enabling possible remote code execution and CVE-2022-3786 enabling denial-of-service) affecting OpenSSL versions 3.0.0–3.0.6 via malformed X.509 certificate fields; it notes Cato’s infrastructure is not using vulnerable OpenSSL builds, no exploitation has been observed by Cato, and recommends vendors apply patches and monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
