Rejetto HFS Product Security Update Advisory (CVE-2024-39943)

Overview

Rejetto has released an update to address a vulnerability in their products. Users of affected versions are advised to update to the latest version.

 

Affected Products

CVE-2024-39943

  • Rejetto HFS versions: ~ 0.52.10 (excluded) (Linux, UNIX, macOS)

 

 

Resolved Vulnerabilities

Vulnerability that allows remote authenticated users to execute OS commands if they have upload privileges (CVE-2024-39943)

 

Vulnerability Patches

The following Vulnerability Patches are available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2024-39943

  • Rejetto HFS version: 0.52.10 (Linux, UNIX, macOS)

 

 

Referenced Sites

[1] CVE-2024-39943 Detail

https://nvd.nist.gov/vuln/detail/CVE-2024-39943

[2] rejetto/hfs/commit

https://github.com/rejetto/hfs/commit/305381bd36eee074fb238b64302a252668daad1d

[3] rejetto/hfs/compare

https://github.com/rejetto/hfs/compare/v0.52.9…v0.52.10

Article Link: Rejetto HFS Product Security Update Advisory (CVE-2024-39943) – ASEC