McAfee Email And Web Security Appliance Version 5.5 Patch 2

Known vulnerabilities detected

Our automated heuristics have identified vulnerabilities that may be associated with this certificate. See the CVEs section for details.

Certificate details

Status archived
Valid from 13.10.2010
Valid until 15.05.2017
Scheme 🇨🇦 CA
Manufacturer McAfee, Inc.
Category Boundary Protection Devices and Systems
Security level EAL2+, ALC_FLR.2
Maintenance updates McAfee® Email and Web Security Appliance v5.6 (21.03.2011) Certification report Security target

Certificate

certificate could not be downloaded, no link is available.

Certification report

Extracted keywords

Hash functions
SHA1
Protocols
TLS

Security level
EAL 2+, EAL 2, EAL 3, EAL 2 augmented
Security Assurance Requirements (SAR)
ALC_FLR.2
Security Functional Requirements (SFR)
FDP_MAM.1, FDP_MAM.2, FDP_MAM.3
Certificates
383-4-143-CR

Certification process
out of scope, - McAfee Email and Web Gateway and McAfee ePolicy Orchestrator Integration Guide (out of scope of the TOE

Security target

Extracted keywords

Symmetric Algorithms
RC4, 3DES
Hash functions
SHA1
Protocols
SSL, TLS, TLS 1.0

Vendor
Microsoft

Security level
EAL 2, EAL2, EAL2 augmented
Claims
O.S, O.AUDIT_GEN, O.AUDIT_PROTECT, O.AUDIT_REVIEW, O.AUDIT_STOR, O.CRYPT, O.MANAGE, O.MAL_CONTENT, O.RESOURCE_X, O.TOE_ACCESS, O.TIME_STAMPS, O.SECURE_CHK, T.AUDIT_, T.BAD_DAT, T.UNID_ACTION, T.MASQUERADE, T.MAL_AGENT, T.MAL_CONTENT, T.MAL_MSG, T.RESOURCE_X, T.AUDIT_COMP, A.ADMIN, A.LOCATE, A.NO_BYPASS, A.SEC_UPDATES, A.NO_MALW, A.DEDICATED, OE.ADMIN, OE.DEDICATED, OE.NO_BYPASS, OE.NO_MALW, OE.SEC_UPDATES, OE.LOCATE, OE.ADMIN_SESSION, OE.NOSUB, OE.DECRYP, OE.ADMIN_ACCESS
Security Assurance Requirements (SAR)
ADO_OPE, ADV_ARC.1, ADV_FSP.2, ADV_TDS.1, AGD_PRE, AGD_OPE.1, AGD_PRE.1, ALC_FLR.2, ALC_CMC.2, ALC_CMS.2, ALC_DEL.1, ATE_COV.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.2, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1
Security Functional Requirements (SFR)
FAU_ARP.1, FAU_GEN.1, FAU_GEN.2, FAU_SAR.1, FAU_SAR.2, FAU_SAR.3, FAU_SEL.1, FAU_STG.1, FAU_STG, FAU_GEN, FAU_ARP.1.1, FAU_GEN.1.1, FAU_GEN.1.2, FAU_GEN.2.1, FAU_SAR.1.1, FAU_SAR.1.2, FAU_SAR.2.1, FAU_SAR.3.1, FAU_SEL.1.1, FAU_STG.1.1, FAU_STG.1.2, FAU_STG.3, FAU_MTD.1, FAU_SAA.1, FCS_COP.1, FCS_COP.1.1, FCS_CKM.4, FDP_MAM, FDP_MAM.3, FDP_MAM.1, FDP_MAM.2, FDP_MAM.1.1, FDP_MAM.2.1, FDP_MAM.3.1, FDP_ACF, FDP_IFF, FIA_UAU.2, FIA_UID.2, FIA_SOS.1, FIA_UAU.2.1, FIA_UID.2.1, FIA_SOS.1.1, FIA_UID.1, FMT_MSA, FMT_MOF, FMT_MTD, FMT_SMF.1, FMT_SMR.1, FMT_MOF.1, FMT_MTD.1, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FPT_STM.1, FPT_STM.1.1, FTA_SSL.3, FTA_SSL.3.1

Certification process
out of scope, - o McAfee Email and Web Gateway and McAfee ePolicy Orchestrator Integration Guide (out of scope of the TOE

Standards
FIPS 140, FIPS 140-2

Automated analysis

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

383-4-143

Extracted SARs

ADV_ARC.1, ADV_FSP.2, ADV_TDS.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.2, ALC_CMS.2, ALC_DEL.1, ALC_FLR.2, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1, ATE_COV.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.2

CVE matches

ID Links Severity CVSS Score Published on
Base score
CVE-2012-4014
C N
HIGH 7.8 25.09.2012
CVE-2012-4580
C N
MEDIUM 4.3 22.08.2012
CVE-2012-4581
C N
MEDIUM 6.8 22.08.2012
CVE-2012-4582
C N
MEDIUM 4.9 22.08.2012
CVE-2012-4583
C N
MEDIUM 4.0 22.08.2012
CVE-2012-4584
C N
LOW 3.5 22.08.2012
CVE-2012-4585
C N
MEDIUM 4.0 22.08.2012
CVE-2012-4586
C N
LOW 3.5 22.08.2012
CVE-2012-4595
C N
HIGH 7.5 22.08.2012
CVE-2012-4597
C N
MEDIUM 4.3 22.08.2012
Showing 5 out of 10.

Cross-references

No references are available for this certificate.

Processing updates

Feed
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Boundary Protection Devices and Systems",
  "cert_link": null,
  "dgst": "01f7e72665551cb8",
  "heuristics": {
    "_type": "sec_certs.sample.cc_eucc_common.Heuristics",
    "annotated_references": null,
    "cert_id": "383-4-143",
    "cert_lab": null,
    "cpe_matches": {
      "_type": "Set",
      "elements": [
        "cpe:2.3:a:mcafee:email_and_web_security:5.5:*:*:*:*:*:*:*"
      ]
    },
    "direct_transitive_cves": null,
    "eal": "EAL2+",
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "5.5"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": null,
    "related_cves": {
      "_type": "Set",
      "elements": [
        "CVE-2012-4586",
        "CVE-2012-4582",
        "CVE-2012-4580",
        "CVE-2012-4581",
        "CVE-2012-4584",
        "CVE-2012-4595",
        "CVE-2012-4583",
        "CVE-2012-4597",
        "CVE-2012-4585",
        "CVE-2012-4014"
      ]
    },
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "scheme_data": null,
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": [
      {
        "_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
        "maintenance_date": "2011-03-21",
        "maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/mcafee-email-v56-mar-maint-eng.pdf",
        "maintenance_st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/mcafee-email-v55-sec-eng.pdf",
        "maintenance_title": "McAfee\u00ae Email and Web Security Appliance v5.6"
      }
    ]
  },
  "manufacturer": "McAfee, Inc.",
  "manufacturer_web": "https://www.mcafee.com/",
  "name": "McAfee Email And Web Security Appliance Version 5.5 Patch 2",
  "not_valid_after": "2017-05-15",
  "not_valid_before": "2010-10-13",
  "pdf_data": {
    "_type": "sec_certs.sample.cc_eucc_common.PdfData",
    "cert_filename": null,
    "cert_frontpage": null,
    "cert_keywords": null,
    "cert_metadata": null,
    "report_filename": "mcafee-email-v55-cert-eng.pdf",
    "report_frontpage": {
      "CA": {}
    },
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "CA": {
          "383-4-143-CR": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ALC": {
          "ALC_FLR.2": 2
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 3,
          "EAL 2 augmented": 2,
          "EAL 2+": 2,
          "EAL 3": 1
        }
      },
      "cc_sfr": {
        "FDP": {
          "FDP_MAM.1": 1,
          "FDP_MAM.2": 1,
          "FDP_MAM.3": 1
        }
      },
      "certification_process": {
        "OutOfScope": {
          "- McAfee Email and Web Gateway and McAfee ePolicy Orchestrator Integration Guide (out of scope of the TOE": 1,
          "out of scope": 1
        }
      },
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "TLS": {
          "TLS": {
            "TLS": 2
          }
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA1": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 180-3": 1
        },
        "ISO": {
          "ISO/IEC 17025:2005": 1
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "krshann",
      "/CreationDate": "D:20101217104428-05\u002700\u0027",
      "/Creator": "PScript5.dll Version 5.2.2",
      "/ModDate": "D:20110117132012-05\u002700\u0027",
      "/Producer": "Acrobat Distiller 7.0 (Windows)",
      "/Title": "Microsoft Word - 383-4-143 CR v1.0e.doc",
      "pdf_file_size_bytes": 57419,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 16
    },
    "st_filename": "mcafee-email-v55-sec-eng.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {
        "A": {
          "A.ADMIN": 2,
          "A.DEDICATED": 1,
          "A.LOCATE": 2,
          "A.NO_BYPASS": 2,
          "A.NO_MALW": 2,
          "A.SEC_UPDATES": 2
        },
        "O": {
          "O.AUDIT_GEN": 4,
          "O.AUDIT_PROTECT": 3,
          "O.AUDIT_REVIEW": 3,
          "O.AUDIT_STOR": 4,
          "O.CRYPT": 3,
          "O.MAL_CONTENT": 2,
          "O.MANAGE": 5,
          "O.RESOURCE_X": 4,
          "O.S": 4,
          "O.SECURE_CHK": 2,
          "O.TIME_STAMPS": 4,
          "O.TOE_ACCESS": 3
        },
        "OE": {
          "OE.ADMIN": 2,
          "OE.ADMIN_ACCESS": 1,
          "OE.ADMIN_SESSION": 1,
          "OE.DECRYP": 1,
          "OE.DEDICATED": 2,
          "OE.LOCATE": 2,
          "OE.NOSUB": 1,
          "OE.NO_BYPASS": 2,
          "OE.NO_MALW": 2,
          "OE.SEC_UPDATES": 2
        },
        "T": {
          "T.AUDIT_": 1,
          "T.AUDIT_COMP": 1,
          "T.BAD_DAT": 2,
          "T.MAL_AGENT": 2,
          "T.MAL_CONTENT": 1,
          "T.MAL_MSG": 2,
          "T.MASQUERADE": 2,
          "T.RESOURCE_X": 2,
          "T.UNID_ACTION": 2
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ADO": {
          "ADO_OPE": 1
        },
        "ADV": {
          "ADV_ARC.1": 1,
          "ADV_FSP.2": 1,
          "ADV_TDS.1": 1
        },
        "AGD": {
          "AGD_OPE.1": 1,
          "AGD_PRE": 1,
          "AGD_PRE.1": 1
        },
        "ALC": {
          "ALC_CMC.2": 1,
          "ALC_CMS.2": 1,
          "ALC_DEL.1": 1,
          "ALC_FLR.2": 6
        },
        "ASE": {
          "ASE_CCL.1": 1,
          "ASE_ECD.1": 1,
          "ASE_INT.1": 1,
          "ASE_OBJ.2": 1,
          "ASE_REQ.2": 1,
          "ASE_SPD.1": 1,
          "ASE_TSS.1": 1
        },
        "ATE": {
          "ATE_COV.1": 1,
          "ATE_FUN.1": 1,
          "ATE_IND.2": 1
        },
        "AVA": {
          "AVA_VAN.2": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 3,
          "EAL2": 2,
          "EAL2 augmented": 1
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_ARP.1": 11,
          "FAU_ARP.1.1": 1,
          "FAU_GEN": 3,
          "FAU_GEN.1": 9,
          "FAU_GEN.1.1": 1,
          "FAU_GEN.1.2": 1,
          "FAU_GEN.2": 7,
          "FAU_GEN.2.1": 1,
          "FAU_MTD.1": 1,
          "FAU_SAA.1": 2,
          "FAU_SAR.1": 7,
          "FAU_SAR.1.1": 1,
          "FAU_SAR.1.2": 1,
          "FAU_SAR.2": 7,
          "FAU_SAR.2.1": 1,
          "FAU_SAR.3": 7,
          "FAU_SAR.3.1": 1,
          "FAU_SEL.1": 7,
          "FAU_SEL.1.1": 1,
          "FAU_STG": 12,
          "FAU_STG.1": 9,
          "FAU_STG.1.1": 1,
          "FAU_STG.1.2": 1,
          "FAU_STG.3": 2
        },
        "FCS": {
          "FCS_CKM.4": 2,
          "FCS_COP.1": 7,
          "FCS_COP.1.1": 1
        },
        "FDP": {
          "FDP_ACF": 2,
          "FDP_IFF": 2,
          "FDP_MAM": 20,
          "FDP_MAM.1": 19,
          "FDP_MAM.1.1": 1,
          "FDP_MAM.2": 11,
          "FDP_MAM.2.1": 1,
          "FDP_MAM.3": 17,
          "FDP_MAM.3.1": 2
        },
        "FIA": {
          "FIA_SOS.1": 6,
          "FIA_SOS.1.1": 1,
          "FIA_UAU.2": 6,
          "FIA_UAU.2.1": 1,
          "FIA_UID.1": 3,
          "FIA_UID.2": 5,
          "FIA_UID.2.1": 1
        },
        "FMT": {
          "FMT_MOF": 12,
          "FMT_MOF.1": 2,
          "FMT_MSA": 1,
          "FMT_MTD": 10,
          "FMT_MTD.1": 2,
          "FMT_SMF.1": 9,
          "FMT_SMF.1.1": 1,
          "FMT_SMR.1": 9,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_STM.1": 6,
          "FPT_STM.1.1": 1
        },
        "FTA": {
          "FTA_SSL.3": 5,
          "FTA_SSL.3.1": 1
        }
      },
      "certification_process": {
        "OutOfScope": {
          "- o McAfee Email and Web Gateway and McAfee ePolicy Orchestrator Integration Guide (out of scope of the TOE": 1,
          "out of scope": 1
        }
      },
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "TLS": {
          "SSL": {
            "SSL": 7
          },
          "TLS": {
            "TLS": 5,
            "TLS 1.0": 1
          }
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA1": 7
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140": 1,
          "FIPS 140-2": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "RC": {
            "RC4": 1
          }
        },
        "DES": {
          "3DES": {
            "3DES": 1
          }
        }
      },
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 7
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "M. McAlister, InfoGard",
      "/Company": "TOSHIBA",
      "/CreationDate": "D:20100723141244+01\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 9.1 for Word",
      "/Keywords": "",
      "/ModDate": "D:20101224100800-05\u002700\u0027",
      "/Producer": "Adobe PDF Library 9.0",
      "/SourceModified": "D:20100723131008",
      "/Subject": "",
      "/Title": "McAfee Secure Content Manager Security Target",
      "pdf_file_size_bytes": 554971,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 60
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": []
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/mcafee-email-v55-cert-eng.pdf",
  "scheme": "CA",
  "security_level": {
    "_type": "Set",
    "elements": [
      "ALC_FLR.2",
      "EAL2+"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/mcafee-email-v55-sec-eng.pdf",
  "state": {
    "_type": "sec_certs.sample.cc_eucc_common.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": false,
      "download_ok": false,
      "extract_ok": false,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": "54b4c428c34eb1ab19dd83d2ab6b1510416b498e308a84cd4decbdc35254888f",
      "source_hash": "db6c3264e80f04266f8f0b156e4de6bafe574f4a08552aa998fa1a7005bd1e05",
      "txt_hash": "67d5dc5833646c35f2f2be867b77869a0772886ad2b8291c646eea7a364d2426"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": "e770184f9c105e2eb93408ac8c497fb7c513ae0b42f7f788d15e07752a50164b",
      "source_hash": "2e2d48fe12883e199ec103891dd6a7cbc4b6b39cbe1fbbb98a4cae3e1e62b342",
      "txt_hash": "f2e7fff65c017fa2eb6248667b452fa59634219a04ac7cb74889c51c2f4709cb"
    }
  },
  "status": "archived"
}