Overview
Rejetto has released an update to address a vulnerability in their products. Users of affected versions are advised to update to the latest version.
Affected Products
CVE-2024-39943
- Rejetto HFS versions: ~ 0.52.10 (excluded) (Linux, UNIX, macOS)
Resolved Vulnerabilities
Vulnerability that allows remote authenticated users to execute OS commands if they have upload privileges (CVE-2024-39943)
Vulnerability Patches
The following Vulnerability Patches are available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2024-39943
- Rejetto HFS version: 0.52.10 (Linux, UNIX, macOS)
Referenced Sites
[1] CVE-2024-39943 Detail
https://nvd.nist.gov/vuln/detail/CVE-2024-39943
[2] rejetto/hfs/commit
https://github.com/rejetto/hfs/commit/305381bd36eee074fb238b64302a252668daad1d
[3] rejetto/hfs/compare
https://github.com/rejetto/hfs/compare/v0.52.9…v0.52.10
Article Link: Rejetto HFS Product Security Update Advisory (CVE-2024-39943) – ASEC