"TLS-RSA cipher suites are not disabled in BigFix Compliance up to v2.0.5. If TLS 2.0 and secure ciphers are not enabled then an attacker can passively record traffic and later decrypt it."
References
Link | Resource |
---|---|
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0096977 | Mitigation Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: HCL
Published: 2022-03-04T21:18:06
Updated: 2022-03-04T21:18:06
Reserved: 2021-02-26T00:00:00
Link: CVE-2021-27756
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-03-04T22:15:18.850
Modified: 2022-03-12T02:05:33.667
Link: CVE-2021-27756
JSON object: View
Redhat Information
No data.
CWE