cbcvebase.
CVE-2019-3729
published 2019-09-30

CVE-2019-3729: RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when…

PriorityP48low2.4CVSS 3.1
AVAACLPRHUINSUCNINAL
EPSS
0.40%
32.5th percentile
RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when parsing ECDSA signature. A malicious user with adjacent network access could potentially exploit this vulnerability to cause a crash in the library of the affected system.

Affected

3 ranges
VendorProductVersion rangeFixed in
dellbsafe_micro-edition-suite>= 4.0.0 < 4.0.134.0.13
dellbsafe_micro-edition-suite>= 4.1.0 < 4.4.04.4.0
dellrsa_bsafe_mes>= unspecified < 4.44.4

CVSS provenance

nvdv3.12.4LOWCVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
nvdv3.02.4LOWCVSS:3.0/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
nvdv2.02.7LOWAV:A/AC:L/Au:S/C:N/I:N/A:P
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.