Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Viewing all articles
Browse latest Browse all 5385

Re: Three known security issues in LEM 6.2.1

$
0
0

Hi everyone,

 

We have released a hotfix that addresses the following:

 

  • CVE-2015-7501: Deserialization vulnerability in the Apache® Commons-Collections library
  • CVE-2015-3269: BlazeDS XML External Entity (XXE) vulnerability

 

Slowloris is a pain because we are not using apache in the ways that have been mentioned in many posts we have followed over the years.  We are looking into some fixes that may be possible for this, but if it was just a package update it would have been fixed long ago.

 

You need to be on 6.2.1

http://downloads.solarwinds.com/solarwinds/Release/HotFix/LEM-v6.2.1-HotFix1.zip

 

Thanks


Viewing all articles
Browse latest Browse all 5385

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>