Our internal security team reported the OpenSSL vulnerabilities in our Production SiteMinder WebAgent running on an Apache Reverse Proxy server. The current version is OpenSSL 1.0.2e 3 Dec 2015. As a fix for that, we need to upgrade the version to OpenSSL 1.0.2zh.
OS: Red Hat Enterprise Linux 8.7
WebAgent Version details:
Product Name=CA SiteMinder Web Agent
FullVersion=12.52.110.2813
Version=12.52
Update=110
Build Number=2813
The WebAgent does not install OpenSSL nor do we supply OpenSSL with our Web Agents.