CVE-2021-27891: High severity ssh tectia client vulnerability
Published Mar 15, 2021
·Updated
SSH Tectia Client and Server before 6.4.19 on Windows have weak key generation. ConnectSecure on Windows is affected.
Affected Software
4 affected components
SSH Tectia Client<6.4.19
SSH Tectia Connectsecure
SSH Tectia Server<6.4.19
Microsoft Windows
Event History
Mar 15, 2021
CVE Published
via MITRE·02:07 PM
Data Sourced
via MITRE·02:07 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-27891?
CVE-2021-27891 has been classified as a moderate severity vulnerability due to weak key generation in SSH Tectia Client and Server.
2
How do I fix CVE-2021-27891?
To fix CVE-2021-27891, upgrade SSH Tectia Client and Server to version 6.4.19 or later.
3
Which versions of SSH Tectia Client are affected by CVE-2021-27891?
SSH Tectia Client versions prior to 6.4.19 are affected by CVE-2021-27891.
4
Is SSH Tectia ConnectSecure affected by CVE-2021-27891?
Yes, SSH Tectia ConnectSecure is affected by CVE-2021-27891 on Windows systems.
5
Are there any mitigations available for CVE-2021-27891?
The primary mitigation for CVE-2021-27891 is to update to the latest version of SSH Tectia Client and Server.