English
The Internet threat alert status is currently normal. At present, no major epidemics or other serious incidents have been recorded by Kaspersky Lab’s monitoring service. Internet threat level: 1

Blue Coat Reporter OpenSSL Two Vulnerabilities


Secunia ID

SA47863

CVE-ID

CVE-2010-3864, CVE-2011-0014

Release Date

02 Feb 2012

Criticality

Moderately Critical

Solution Status

Unpatched

Software

Blue Coat Reporter 8.x

Where

From remote

Impact
DoS (Denial of Service)

This includes vulnerabilities ranging from excessive resource consumption (e.g. causing a system to use a lot of memory) to crashing an application or an entire system.

System access

This covers vulnerabilities where malicious people are able to gain system access and execute arbitrary code with the privileges of a local user.

Exposure of sensitive information

Vulnerabilities where documents or credentials are leaked or can be revealed either locally or from remote.

Description

Blue Coat has acknowledged two vulnerabilities in Reporter, which can be exploited by malicious people to disclose potentially sensitive information, cause a DoS (Denial of Service), and potentially compromise an application using the library.

For more information:
SA42243
SA43227

Solution

Upgrade to version 9.3.2.1 or 9.2.5.1.

Original Advisory

SA68">https://kb.bluecoat.com/index?page=content&id=SA68