[R1] Nessus Agent 7.4.0 Fixes One Third-party Vulnerability

Related Vulnerabilities: CVE-2019-1559  

Nessus Agent leverages third-party software to help provide underlying functionality. One of the third-party components (OpenSSL) was found to contain a single vulnerability, and updated versions have been made available by the providers. Out of caution and in line with good practice, Tenable opted to upgrade the bundled library to address the potential impact of these issues in Nessus Agent. Nessus Agent 7.4.0 updates OpenSSL to version 1.0.2r to address the identified vulnerability.

Synopsis

Nessus Agent leverages third-party software to help provide underlying functionality. One of the third-party components (OpenSSL) was found to contain a single vulnerability, and updated versions have been made available by the providers.

Out of caution and in line with good practice, Tenable opted to upgrade the bundled library to address the potential impact of these issues in Nessus Agent. Nessus Agent 7.4.0 updates OpenSSL to version 1.0.2r to address the identified vulnerability.

Solution

Tenable has released Nessus Agent 7.4.0 to address these issues. The installation files can be obtained from the Tenable Downloads Portal (https://www.tenable.com/downloads/nessus-agents)