CVE-2022-34381
CRITICALDescription
Dell BSAFE SSL-J version 7.0 and all versions prior to 6.5, and Dell BSAFE Crypto-J versions prior to 6.2.6.1 contain an unmaintained third-party component vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to the compromise of the impacted system. This is a Critical vulnerability and Dell recommends customers to upgrade at the earliest opportunity.
Is your site exposed to CVE-2022-34381?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| dell | bsafe_ssl-j |
| dell | bsafe_ssl-j |
| dell | bsafe_crypto-j |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2022-34381? +
How severe is CVE-2022-34381? +
What products are affected by CVE-2022-34381? +
How do I check if I'm vulnerable to CVE-2022-34381? +
Related Vulnerabilities
Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
Reliance on a component that is not updateable in Windows Secure Boot allows an authorized attacker to bypass a security …
Dell PowerFlex appliance versions prior to IC 46.381.00 and IC 46.376.00, Dell PowerFlex rack versions prior to RCM 3.8.1.0 (for …
Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remote user authentication. A …
Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, 3.5.4 and below contains an improper input validation vulnerability. A remote …