Oval Definition:oval:org.opensuse.security:def:80074
Revision Date:2014-10-22Version:1
Title:Security update for openwsman
Description:



This update adds a configuration option to disable SSLv2 and SSLv3 in openwsman. This is required to mitigate CVE-2014-3566.

To use the new option, edit /etc/openwsman/openwsman.conf and add the following line to the [server] section:

ssl_disabled_protocols = SSLv2 SSLv3

Security Issues:

* CVE-2014-3566

Family:unixClass:patch
Status:Reference(s):901882
CVE-2014-3566
Platform(s):SUSE Linux Enterprise Desktop 11 SP3
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • libwsman1-2.2.3-0.8.1 is installed
  • OR openwsman-client-2.2.3-0.8.1 is installed
  • OR openwsman-server-2.2.3-0.8.1 is installed
  • BACK