NOTICE - OpenSSL vulnerabilities CVE-2022-3786 and CVE-2022-3602: X.509 Email Address Buffer Overflows
Scheduled Maintenance Report for Salto
Completed
The scheduled maintenance has been completed.
Posted Nov 01, 2022 - 22:44 UTC
Scheduled
Valued Salto users, a few days ago, the OpenSSL team have announced that there is a new vulnerability in OpenSSL v3.0.x and that a patch will be released on November 1st (today). With a very few details on the vulnerability, it was urged to prepare for patch to be released.
At Salto, we immediately started evaluating the situation and mapped all of our systems.

The OpenSSL team released the details today (see the extended blog post).

After we carefully analyzed the vulnerability itself and our systems, we are happy to announce that we are not affected by this vulnerability.
Please reach out to security@salto.io for any more details.

Best regards,
Salto Security
Posted Nov 01, 2022 - 22:42 UTC