cbcvebase.

Dell Bsafe Micro-Edition-Suite vulnerabilities

28 known vulnerabilities affecting dell/bsafe_micro-edition-suite.

Total CVEs
28
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL10HIGH11MEDIUM6LOW1

Vulnerabilities

Page 2 of 2
CVE-2016-0887P4MEDIUMCVSS 5.9≥ 4.0.0, ≤ 4.0.11≥ 4.1.0, < 4.1.52016-04-12
CVE-2016-0887 [MEDIUM] CWE-200 CVE-2016-0887: EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x and 4.1.x before 4.1.5, RSA BSAFE Crypto-C Micro Editi EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x and 4.1.x before 4.1.5, RSA BSAFE Crypto-C Micro Edition (CCME) 4.0.x and 4.1.x before 4.1.3, RSA BSAFE Crypto-J before 6.2.1, RSA BSAFE SSL-J before 6.2.1, and RSA BSAFE SSL-C before 2.8.9 allow remote attackers to discover a private-key prime by conducting a Lenstra side-channel attack that leverages an
nvd
CVE-2023-28074P4HIGHCVSS 7.1≥ 4.0.0, < 4.6.2v5.02024-07-31
CVE-2023-28074 [HIGH] CWE-125 CVE-2023-28074: Dell BSAFE Crypto-C Micro Edition, version 4.1.5, and Dell BSAFE Micro Edition Suite, versions 4.0 t Dell BSAFE Crypto-C Micro Edition, version 4.1.5, and Dell BSAFE Micro Edition Suite, versions 4.0 through 4.6.1 and version 5.0, contains an Out-of-bounds Read vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Information exposure.
nvd
CVE-2020-5359P4MEDIUMCVSS 5.8fixed in 4.52020-12-16
CVE-2020-5359 [MEDIUM] CWE-544 CVE-2020-5359: Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to an Unchecked Return Value V Dell BSAFE Micro Edition Suite, versions prior to 4.5, are vulnerable to an Unchecked Return Value Vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability to modify and corrupt the encrypted data.
nvd
CVE-2014-0636P4MEDIUMCVSS 5.8v3.2.0v3.2.1+9 more2014-04-11
CVE-2014-0636 [MEDIUM] CWE-310 CVE-2014-0636: EMC RSA BSAFE Micro Edition Suite (MES) 3.2.x before 3.2.6 and 4.0.x before 4.0.5 does not properly EMC RSA BSAFE Micro Edition Suite (MES) 3.2.x before 3.2.6 and 4.0.x before 4.0.5 does not properly validate X.509 certificate chains, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate chain.
nvd
CVE-2014-0628P4MEDIUMCVSS 5.0v4.0.0v4.0.1+3 more2014-03-25
CVE-2014-0628 [MEDIUM] CWE-20 CVE-2014-0628: The server in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.5 does not properly process c The server in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.5 does not properly process certificate chains, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.
nvd
CVE-2020-35165P4MEDIUMCVSS 4.7fixed in 4.62024-05-22
CVE-2020-35165 [MEDIUM] CWE-208 CVE-2020-35165: Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versio Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.6, contain an Observable Timing Discrepancy Vulnerability.
nvd
CVE-2014-4630P4MEDIUMCVSS 4.3v4.0.0v4.0.1+4 more2014-12-30
CVE-2014-4630 [MEDIUM] CWE-310 CVE-2014-4630: EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.6 and RSA BSAFE SSL-J before 6.1.4 do not e EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.6 and RSA BSAFE SSL-J before 6.1.4 do not ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple handshake attack."
nvd
CVE-2019-3729P4LOWCVSS 2.4≥ 4.0.0, < 4.0.13≥ 4.1.0, < 4.4.02019-09-30
CVE-2019-3729 [LOW] CWE-121 CVE-2019-3729: RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerabl RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when parsing ECDSA signature. A malicious user with adjacent network access could potentially exploit this vulnerability to cause a crash in the library of the affected system.
nvd
Dell Bsafe Micro-Edition-Suite vulnerabilities | cvebase