View Issue Details

IDProjectCategoryView StatusLast Update
0004008Compliance Test Tool (CTT) Unified Architecture3 - Feature Requestpublic2019-04-05 15:37
ReporterRandy Armstrong Assigned ToAlexander Allmendinger  
PrioritynormalSeverityminorReproducibilityalways
Status assignedResolutionopen 
Product Version1.03.340.358 
Target Version1.04 
Summary0004008: BSI: Develop UnitTests to check for vulnerabilties.
Description

"It's suggested to check the possibilty to use the following vulnerbilities as an attack vector:

  • replay attacks due to the missing squence number check
  • usage of compromised certificates due the missing validity do to not operating CRL checks.
  • denial of service attacks with the help of memory leaks.
    "
TagsNo tags attached.
Files Affected

Activities

Paul Hunkar

2017-10-17 13:13

administrator   ~0008578

This Mantis is assigned to Karl - to allocate funding to develop the required functionality - once funding is assigned it needs to be reassigned to testlab / certification

Paul Hunkar

2019-04-05 15:37

administrator   ~0010122

the certificate checks have been completed using general maintenance funds
Memory leaks are also tested during -long term testing
Only replay attacks need to be added

Issue History

Date Modified Username Field Change
2017-10-11 16:23 Randy Armstrong New Issue
2017-10-11 16:23 Randy Armstrong Status new => assigned
2017-10-11 16:23 Randy Armstrong Assigned To => Karl Deiretsbacher
2017-10-11 16:23 Randy Armstrong Issue generated from: 0003365
2017-10-11 16:23 Randy Armstrong Project Cyber Security => Compliance Test Tool (CTT) Unified Architecture
2017-10-11 16:23 Randy Armstrong Category weakness => Api Change
2017-10-17 13:11 Paul Hunkar Category Api Change => Feature Request
2017-10-17 13:11 Paul Hunkar Description Updated
2017-10-17 13:13 Paul Hunkar Note Added: 0008578
2017-10-17 13:14 Paul Hunkar Product Version => 1.03.340.358
2017-10-17 13:14 Paul Hunkar Target Version => 1.04
2019-01-28 14:14 Paul Hunkar Category Feature Request => 3 - Feature Request
2019-04-05 15:37 Paul Hunkar Note Added: 0010122
2019-04-05 15:37 Paul Hunkar Assigned To Karl Deiretsbacher => Alexander Allmendinger