Splunk Enterprise

Splunk Enterprise 6.5.0 is affected by multiple OpenSSL vulnerabilities. Will the next version fix these security problems?

sicurezzasf
New Member

The OpenSSL library version 1.0.2h-fips included in Splunk Enterprise 6.5.0 is affected by multiple vulnerabilities (OpenSSL 2016-09-22). Will the next Splunk Enterprise update version fix these security problems? And when will it be released? Thank you.

0 Karma

chrisg_splunk
Splunk Employee
Splunk Employee

OpenSSL updates will be available in a maintenance release of Splunk Enterprise in line with past advisories listed on https://www.splunk.com/page/securityportal/. The most effective way to get status information is to open a support case to track your support request. If you don't have a support contract, escalate via the security portal.

Get Updates on the Splunk Community!

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...