Security Finder

You can use the Security Finder to search for security issues and their impact on Riverbed products. This page is continuously updated, displaying the most current public security issues first. The search box can be used to look up records by specific CVE numbers or relevant search word, e.g. Apache, 8.5.0, Workaround. For additional search tips, refer to article S16165. Security issues listed here are categorized into three groups: fixed, workaround recommended and not applicable.

For general security topics, security best practices and other security related topics, try performing a general search.

BETA FEATURE: This feature is currently under development and is considered Beta Software. We are still enhancing the features and results so please exercise caution when interpreting and implementing the results. If you have any questions, please open a case with Riverbed Support. If you have feedback for this tool, please send it to supportfeedback@riverbed.com.

Riverbed Technology is committed to protecting customers against vulnerabilities in our supported products. Vulnerabilities are addressed in accordance to the software support policy. https://support.riverbed.com/content/support/about_support/end_of_life_policy.html

For search tips, read article S16165.

cURL cumulative security update for security advisories adv_20150422A, adv_20150422B, adv_20150422C, and adv_20150422D (Bug #235947)

Products:
SteelHead (Appliance), SteelHead Interceptor, SteelCentral Controller for SteelHead (Central Management Console)
Fixed in Version:
cmc 8.6.0d, cmc 9.1.0c, interceptor 5.0.0a, steelhead 9.1.2, interceptor 5.5.0, cmc 9.2.0, steelhead 9.2.0
Last Modified:
2016-06-07
Summary
Details:

CVE-2015-3143

    NTLM-authenticated connections could be wrongly reused for requests
    without any credentials set, leading to HTTP requests being sent
    over the connection authenticated as a different user. This is
    similar to the issue fixed in DSA-2849-1.

CVE-2015-3144 

    When parsing URLs with a zero-length hostname (such as "http://:80"),
    libcurl would try to read from an invalid memory address. This could
    allow remote attackers to cause a denial of service (crash). This
    issue only affects the upcoming stable (jessie) and unstable (sid)
    distributions.

CVE-2015-3145

    When parsing HTTP cookies, if the parsed cookie's "path" element
    consists of a single double-quote, libcurl would try to write to an
    invalid heap memory address. This could allow remote attackers to
    cause a denial of service (crash). This issue only affects the
    upcoming stable (jessie) and unstable (sid) distributions.

CVE-2015-3148

    When doing HTTP requests using the Negotiate authentication method
    along with NTLM, the connection used would not be marked as
    authenticated, making it possible to reuse it and send requests for
    one user over the connection authenticated as a different user.

Not Applicable:

CVE-2015-3144, and CVE-2015-3145

Fix:

Upgraded cURL utility to 7.44.0 

Recommendation:

Upgrade to patched version if applicable.