[R1] Nessus Agent 8.2.2 Fixes Multiple Vulnerabilities

Related Vulnerabilities: CVE-2020-1971   CVE-2020-1967  

Nessus Agent leverages third-party software to help provide underlying functionality. One third-party component (OpenSSL) was found to contain vulnerabilities, and updated versions have been made available by the providers. Out of caution and in line with good practice, Tenable opted to upgrade the bundled libraries to address the potential impact of these issues. Nessus Agent version 8.2.2 will update OpenSSL to 1.1.1i to address the identified vulnerabilities.

Synopsis

Nessus Agent leverages third-party software to help provide underlying functionality. One third-party component (OpenSSL) was found to contain vulnerabilities, and updated versions have been made available by the providers.

Out of caution and in line with good practice, Tenable opted to upgrade the bundled libraries to address the potential impact of these issues. Nessus Agent version 8.2.2 will update OpenSSL to 1.1.1i to address the identified vulnerabilities.

Solution

Tenable has released Nessus Agent 8.2.2 to address these issues. The installation files can be obtained from the Tenable Downloads Portal (https://www.tenable.com/downloads/nessus-agents).