CVE-2018-15769
- EPSS 1.54%
- Published 16.11.2018 21:29:00
- Last modified 21.11.2024 03:51:26
RSA BSAFE Micro Edition Suite versions prior to 4.0.11 (in 4.0.x series) and versions prior to 4.1.6.2 (in 4.1.x series) contain a key management error issue. A malicious TLS server could potentially cause a Denial Of Service (DoS) on TLS clients dur...
CVE-2018-11058
- EPSS 1.73%
- Published 14.09.2018 20:29:00
- Last modified 21.11.2024 03:42:35
RSA BSAFE Micro Edition Suite, versions prior to 4.0.11 (in 4.0.x) and prior to 4.1.6 (in 4.1.x), and RSA BSAFE Crypto-C Micro Edition, version prior to 4.0.5.3 (in 4.0.x) contain a Buffer Over-Read vulnerability when parsing ASN.1 data. A remote att...
CVE-2018-11054
- EPSS 2.35%
- Published 31.08.2018 18:29:00
- Last modified 21.11.2024 03:42:34
RSA BSAFE Micro Edition Suite, version 4.1.6, contains an integer overflow vulnerability. A remote attacker could use maliciously constructed ASN.1 data to potentially cause a Denial Of Service.
CVE-2018-11055
- EPSS 0.09%
- Published 31.08.2018 18:29:00
- Last modified 21.11.2024 03:42:34
RSA BSAFE Micro Edition Suite, versions prior to 4.0.11 (in 4.0.x) and prior to 4.1.6.1 (in 4.1.x), contains an Improper Clearing of Heap Memory Before Release ('Heap Inspection') vulnerability. Decoded PKCS #12 data in heap memory is not zeroized by...
CVE-2018-11056
- EPSS 1.96%
- Published 31.08.2018 18:29:00
- Last modified 21.11.2024 03:42:35
RSA BSAFE Micro Edition Suite, prior to 4.1.6.1 (in 4.1.x), and RSA BSAFE Crypto-C Micro Edition versions prior to 4.0.5.3 (in 4.0.x) contain an Uncontrolled Resource Consumption ('Resource Exhaustion') vulnerability when parsing ASN.1 data. A remote...
CVE-2018-11057
- EPSS 0.62%
- Published 31.08.2018 18:29:00
- Last modified 21.11.2024 03:42:35
RSA BSAFE Micro Edition Suite, versions prior to 4.0.11 (in 4.0.x) and prior to 4.1.6.1 (in 4.1.x) contains a Covert Timing Channel vulnerability during RSA decryption, also known as a Bleichenbacher attack on RSA decryption. A remote attacker may be...
CVE-2016-0923
- EPSS 0.58%
- Published 18.09.2016 02:59:04
- Last modified 12.04.2025 10:46:40
The client in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.9 and 4.1.x before 4.1.5 places the weakest algorithms first in a signature-algorithm list transmitted to a server, which makes it easier for remote attackers to defeat cryptograp...
CVE-2015-0537
- EPSS 2.28%
- Published 20.08.2015 10:59:04
- Last modified 12.04.2025 10:46:40
Integer underflow in the base64-decoding implementation in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3, RSA BSAFE Crypto-C Micro Edition (Crypto-C ME) before 4.0.4 and 4.1, and RSA BSAFE SSL-C 2.8.9 and earlier a...
CVE-2015-0536
- EPSS 1.03%
- Published 20.08.2015 10:59:03
- Last modified 12.04.2025 10:46:40
EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier, when client authentication and an ephemeral Diffie-Hellman ciphersuite are enabled, allow remote attackers to cause a denial of s...
CVE-2015-0535
- EPSS 0.44%
- Published 20.08.2015 10:59:02
- Last modified 12.04.2025 10:46:40
EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.8 and 4.1.x before 4.1.3 and RSA BSAFE SSL-C 2.8.9 and earlier do not properly restrict TLS state transitions, which makes it easier for remote attackers to conduct cipher-downgrade attacks to ...