Uploaded image for project: 'SET - Setups'
  1. SET - Setups
  2. SET-231

Update PostgreSQL jdbc driver from 42.4.3 to 42.4.4 due to 3rd party Vulnerability CVE-2024-1597

    XMLWordPrintable

Details

    • Fix
    • Status: Released (View Workflow)
    • Minor
    • Resolution: Fixed
    • 2.5.8, 2.6.5
    • 2.5.9, 2.6.6
    • None
    • CVE-2024-1597

    Description

      Current Situation

      JS7 Agent and JOC Cockpit are shipped with the JDBC Driver postgresql-42.4.3.jar. A vulnerability affects this version, https://nvd.nist.gov/vuln/detail/CVE-2024-1597.

      We rate the impact to our software as low

       

      Desired Behavior

      JS7 components should ship with version 42.4.4 which fixes the issue.

      Maintainer Notes

      Attachments

        Activity

          People

            sp Santiago Aucejo Petzoldt
            sp Santiago Aucejo Petzoldt
            Gautam Vadera Gautam Vadera
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: