Lucene search

K
f5F5F5:K15702
HistorySep 18, 2015 - 12:00 a.m.

K15702 : SSLv3 vulnerability CVE-2014-3566

2015-09-1800:00:00
my.f5.com
85

4.5 Medium

AI Score

Confidence

Low

0.975 High

EPSS

Percentile

100.0%

Security Advisory Description

A flaw in the design of Secure Socket Layer (SSL) version 3.0 has been discovered that may allow a network attacker to force a client to negotiate an SSL handshake using SSL version 3.0 ciphers instead of Transport Layer Security (TLS) version 1.x ciphers. The attacker can then perform an attack to calculate the plaintext of secure connections. This vulnerability is referred to as “POODLE”. (CVE-2014-3566)

Impact

Attackers may be able to calculate the plaintext of secure connections.