Vulnerability record · CVE-2016-3099 · published 8 June 2017
CVE-2016-3099: Redhat enterprise linux desktop broken cryptographic algorithm vulnerability
Redhat · Enterprise Linux Desktop
mod_ns in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enterprise Linux Server 7, and Red Hat Enterprise Linux Workstation 7 allows remote attackers to force the use of ciphers that were not intended to be enabled.
Description
mod_ns in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enterprise Linux Server 7, and Red Hat Enterprise Linux Workstation 7 allows remote attackers to force the use of ciphers that were not intended to be enabled.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Affected products
4 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://lists.fedoraproject.org/pipermail/package-announce/2016-April/183102.html | Mailing ListThird Party Advisory |
| http://lists.fedoraproject.org/pipermail/package-announce/2016-April/183129.html | Mailing ListThird Party Advisory |
| http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184345.html | Mailing ListThird Party Advisory |
| http://rhn.redhat.com/errata/RHSA-2016-2602.html | Vendor Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=1319052 | Issue TrackingVendor Advisory |
| http://lists.fedoraproject.org/pipermail/package-announce/2016-April/183102.html | Mailing ListThird Party Advisory |
| http://lists.fedoraproject.org/pipermail/package-announce/2016-April/183129.html | Mailing ListThird Party Advisory |
| http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184345.html | Mailing ListThird Party Advisory |
| http://rhn.redhat.com/errata/RHSA-2016-2602.html | Vendor Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=1319052 | Issue TrackingVendor Advisory |
Track CVE-2016-3099 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2016-3099), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.