SSL/TLS RC4 Information Disclosure Weakness (CVE-2013-2566)
Publish Date: 21 juillet 2015
Gravité: : Faible
Date du conseil: 21 juillet 2015
Description
The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that use the same plaintext.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1005641