Language:
http://downloads.asterisk.org/pub/security/AST-2014-011.html
https://issues.asterisk.org/jira/browse/ASTERISK-24425
https://www.openssl.org/news/secadv/20141015.txt
https://www.openssl.org/news/vulnerabilities.html
https://www.imperialviolet.org/2014/10/14/poodle.html
https://www.openssl.org/~bodo/ssl-poodle.pdf
https://tools.ietf.org/html/draft-ietf-tls-downgrade-scsv-00
Severity: Low
ID: 78623
File Name: asterisk_ast_2014_011.nasl
Version: 1.18
Type: remote
Family: Misc.
Published: 10/22/2014
Updated: 6/23/2023
Configuration: Enable paranoid mode, Enable thorough checks
Supported Sensors: Nessus
Risk Factor: Medium
Score: 5.1
Risk Factor: Medium
Base Score: 4.3
Temporal Score: 3.4
Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N
CVSS Score Source: CVE-2014-3566
Risk Factor: Low
Base Score: 3.4
Temporal Score: 3.1
Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N
Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C
CPE: cpe:/a:digium:asterisk
Required KB Items: Settings/ParanoidReport, asterisk/sip_detected
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 10/20/2014
Vulnerability Publication Date: 10/14/2014
CVE: CVE-2014-3566
BID: 70574
CERT: 577193