top of page
eabaffipalubhols

Fortinet closes two vulnerabilities (SSH, Database) in its SIEM: How to apply the patches



During upgrade, Super/Worker and Hardware appliances FSM-2000F and 3500F must be able to communicate with CentOS OS repositories (os-pkgs-cdn.fortisiem.fortinet.com and os-pkgs.fortisiem.fortinet.com) hosted by Fortinet, to get the latest OS packages. Follow these steps to set up this communication via proxy, before initiating the upgrade.




Fortinet closes two vulnerabilities (SSH, Database) in its SIEM



Two new vulnerabilities (CVE-2022-3786 and CVE-2022-3602) have been discovered in OpenSSL v3.0.6 that can potentially cause a crash. While this has been rated a High in the NVD database, GKE endpoints use boringSSL or an older version of OpenSSL that is not affected, so the rating has been reduced to a Medium for GKE.


The third integration is with the Qualys Knowledgebase Connector. TheQualys Knowledgebase Connector integrates ThreatQ with a Qualysappliance, either cloud-based or on-prem. The purpose of the connectoris to download the Qualys Knowledgebase Database into ThreatQ. Allvulnerabilities from the Knowledgebase database are downloaded andstored as Vulnerability objects in ThreatQ, and related to CVE IDswhen Qualys has mapped the QID to a CVE ID. 2ff7e9595c


0 views0 comments

Recent Posts

See All

Comentários


bottom of page