https://www.freebsd.org/security/advisories/FreeBSD-SA-14:19.tcp.asc

Dan Lukes dan at obluda.cz
Wed Sep 6 15:02:29 UTC 2017


Mike Tancsa wrote:
> I have been testing a box against the qualys PCI scanner. For whatever
> reason, RELENG 10 comes up vulnerable still to
> CVE-2004-0230
>
> Any idea why this might show as being an issue still ? Is it an issue or just a false positive ?

I can't judge it as I know neither details of particular test nor why 
Qualys consider it failing. You should contact Qualys for details.

All I can tell is - the Commodo's PCI DSS scanner doesn't claim latest 
10.3-RELEASE vulnerable to CVE-2004-0230. No specific configuration has 
been necessary for such result.

Dan


More information about the freebsd-security mailing list