Skip to content
  • There are no suggestions because the search field is empty.

NIST Advisory CVE-2022-3602/2022-3786 - OpenSSL V3.0.0-V3.0.6 Vulnerability - How are Software Toolbox Products Affected?

The National Institute of Standards and Technology (NIST) has identified a vulnerability in versions 3.0.0-3.0.6 of OpenSSL. Does this affect Software Toolbox Products?

Reference IDs

NIST: CVE-2022-3602
NIST: CVE-2022-3786
 
Full details are available on the NIST National Vulnerability Database:
 
The aforementioned security advisories affect systems running OpenSSL versions 3.0.0-3.0.6 that could leave systems open to denial of service attacks. Buffer overloads from a malicious attacker could result in a system crash for affected systems.
Software Toolbox has determined that both CVE-2022-2274 and CVE-2022-3786 vulnerability do not affect any of our products. Current versions of Software Toolbox product do not utilize the known affected versions of OpenSSL related to these vulnerabilities.
 
If you have a question regarding this advisory, please submit a support ticket