- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
on 10-17-2017 08:51 PM - edited on 11-03-2017 04:58 PM by Retired Member
On October 15th 2017, a security researcher announced a new vulnerability "ROCA: Vulnerable RSA generation" [1] affecting smartcards, security tokens and other secure hardware using chips manufactured by Infineon Technologies AG.
Palo Alto Networks does not use these affected chips in any products. As a result, the Palo Alto Networks platform is not vulnerable to the attack described in CVE-2017-15361 [2].
[1] - https://crocs.fi.muni.cz/public/papers/rsa_ccs17
[2] - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-15361