Security Finder

You can use the Security Finder to search for security issues and their impact on Riverbed products. This page is continuously updated, displaying the most current public security issues first. The search box can be used to look up records by specific CVE numbers or relevant search word, e.g. Apache, 8.5.0, Workaround. For additional search tips, refer to article S16165. Security issues listed here are categorized into three groups: fixed, workaround recommended and not applicable.

For general security topics, security best practices and other security related topics, try performing a general search.

BETA FEATURE: This feature is currently under development and is considered Beta Software. We are still enhancing the features and results so please exercise caution when interpreting and implementing the results. If you have any questions, please open a case with Riverbed Support. If you have feedback for this tool, please send it to supportfeedback@riverbed.com.

Riverbed Technology is committed to protecting customers against vulnerabilities in our supported products. Vulnerabilities are addressed in accordance to the software support policy. https://support.riverbed.com/content/support/about_support/end_of_life_policy.html

For search tips, read article S16165.

PreviousNext
TitleLast Modified
OpenSSL security patch for multiple CVEs 2014-03-20
Cumulative OpenSSL Security update. 2014-03-20
Security update to address X11 forwarding vulnerability 2014-03-20
CVE-2008-1447: DNS Insufficient Socket Entropy Vulnerability 2014-03-20
CVE-2007-5000, CVE-2007-6388: Apache mod_status, mod_imap, mod_imagemap XSS 2014-03-20
sshd spurious error messages. 2014-03-20
CVE-2007-5501: Linux kernel tcp_sacktag_write_queue crafted ACK response denial of service 2014-03-20
CVE-2007-1659: PCRE unmatched regex denial of service 2014-03-20
CVE-2007-5116: Perl regex arbitrary code execution 2014-03-20
CVE-2007-3999, CVE-2007-4000: MIT krb5 Security Advisory 2007-006 for 2014-03-20
MIT KRB5 security advisories 2007-004 and 2007-005. 2014-03-20
Samba cumulative security update 2014-03-20
CVE-2007-0957: krb5_klog_syslog kadmind/KDC key database modification vulnerability 2014-03-20
CVE-2009-3555: SSL/TLS renegotiation man-in-the-middle attack 2014-03-20
CVE-2009-3563: NTP ntp_request MODE_PRIVATE denial of service 2014-03-20
CVE-2009-2906: Samba smbd oplock replay denial of service 2014-03-20
CVE-2009-2698: UDP sendmsg MSG_MORE flag denial of service 2014-03-20
CVE-2009-0692: DHCP arbitrary code execution via crafted subnet-mask option 2014-03-20
CVE-2009-1895: Linux kernel personality subsystem flags vulnerability 2014-03-20
CVE-2008-4309: Net-SNMP crafted GETBULK denial of service attack. 2014-03-20
CVE-2012-2110, CVE-2012-2131: Openssl ASN.1 security patch 2014-03-20
CVE-2013-1862: Apache 2.2x. mod_rewrite remote command execution 2014-03-19
CVE-2008-0891, CVE-2008-1672: OpenSSL server name extension and SKE message denial of service 2014-03-13
CVE-2008-5713: Linux Kernel denial of service with heavy network traffic on SMP appliances. 2014-03-13
OpenSSL upgrade to address multiple security issues 2014-03-13
CVE-2008-5077: OpenSSL EVP_VerifyFinal certificate validation bypass 2014-03-13
CVE-2009-1439: Linux kernel CIFS tree response denial of service 2014-03-13
CVE-2009-0025: Bind DSA_verify certificate validation bypass 2014-03-13
Cumulative security update fore MIT krb5 2014-03-13
CVE-2009-1252: NTP crypto_recv buffer overflow when OpenSSL and autokey are enabled 2014-03-13
Cumulative security update for the base OS RPMs. 2014-03-13
Cumulative security update for pam and libxml2 RPMs 2014-03-13
CVE-2009-3555: SSL/TLS renegotiation handshakes man-in-the-middle attack (aka "Project Mogul" issue). 2014-03-13
CVE-2009-4212: krb5 AES and RC4 decryption Denial of service 2014-03-13
CVE-2009-4212: krb5 AES and RC4 decryption Denial of service 2014-03-13
CVE-2009-4536, CVE-2009-4538: Linux kernel e1000 driver update 2014-03-13
CVE-2009-3720: Python Expat DoS via crafted XML 2014-03-13
Upgraded OpenSSH to 5.2p1 2014-03-12
Error message appears in logs when HTTP_HOST is not set 2014-03-12
Ctl-Alt-Delete key sequence could reboot system. 2014-03-12
PreviousNext