Multiple Vulnerabilities in OpenSSL Affecting Cisco Products: November 2016

On November 10, 2016, the OpenSSL Software Foundation released a security advisory that describes three vulnerabilities. Of these vulnerabilities, the OpenSSL Software Foundation classifies one as “Critical Severity,” one as “Moderate Severity,” and one as “Low Severity.”

Two of the vulnerabilities affect only recent OpenSSL versions in the 1.1.0 release series. The remaining Low Severity vulnerability affects OpenSSL versions in the 1.0.2 and 1.1.0 release series.

This advisory will be updated as additional information becomes available.

This advisory is available at the following link:
http://ift.tt/2fRuOmD On November 10, 2016, the OpenSSL Software Foundation released a security advisory that describes three vulnerabilities. Of these vulnerabilities, the OpenSSL Software Foundation classifies one as “Critical Severity,” one as “Moderate Severity,” and one as “Low Severity.”

Two of the vulnerabilities affect only recent OpenSSL versions in the 1.1.0 release series. The remaining Low Severity vulnerability affects OpenSSL versions in the 1.0.2 and 1.1.0 release series.

This advisory will be updated as additional information becomes available.

This advisory is available at the following link:
http://ift.tt/2fRuOmD
Security Impact Rating: Medium
CVE: CVE-2016-7053,CVE-2016-7054,CVE-2016-7055

from Cisco Security Advisory http://ift.tt/2fRuOmD