imPC@ndo IT

Tracker / CVE-2015-6418

CVE-2015-6418

Medium 4.3

The random-number generator on Cisco Small Business RV routers 4.x and SA500 security appliances 2.2.07 does not have sufficient entropy, which makes it easier for remote attackers to determine a TLS key pair via unspecified computations upon handshake key-exchange data, aka Bug ID CSCus15224.

Affected products and versions

cisco rv016_multi-wan_vpn_firmware
cisco rv042_dual_wan_vpn_router_firmware
cisco rv042g_dual_gigabit_wan_vpn_firmware
cisco rv082_dual_wan_vpn_router_firmware
cisco sa520
cisco sa520w
cisco sa540

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References