Merge pull request #473 from cisagov/update-code-42

Update Code42 Crashplan
pull/474/head
justmurphy 2 years ago committed by GitHub
commit 2c8ed99560
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
  1. 10
      data/cisagov_C.yml

@ -6438,8 +6438,7 @@ software:
investigated: true investigated: true
affected_versions: [] affected_versions: []
fixed_versions: fixed_versions:
- '8.8' - 'All'
- possibly prior versions
unaffected_versions: [] unaffected_versions: []
cve-2021-45046: cve-2021-45046:
investigated: false investigated: false
@ -6453,10 +6452,11 @@ software:
unaffected_versions: [] unaffected_versions: []
vendor_links: vendor_links:
- https://success.code42.com/hc/en-us/articles/4416158712343-RELEASE-NOTIFICATION-Code42-Vulnerability-Mitigation-for-CVE-2021-44228-and-other-updates - https://success.code42.com/hc/en-us/articles/4416158712343-RELEASE-NOTIFICATION-Code42-Vulnerability-Mitigation-for-CVE-2021-44228-and-other-updates
notes: I think, they don't specify in the notice, but we know that they released notes: The CrashPlan app was EOL'd and is now called Code42, so if you detect CrashPlan installed, it is vulnerable.
an updated Crashplan client. Possibly prior versions affected. But you can update easily to Code42 8.8.1 or newer.
references: references:
- '' - 'https://www.crashplan.com/en-us/business/resources/crashplan-for-small-business-updates-its-desktop-app/'
- 'https://success.code42.com/hc/en-us/articles/4416158712343-RELEASE-NOTIFICATION-Code42-Vulnerability-Mitigation-for-CVE-2021-44228-and-other-updates'
last_updated: '2021-12-16T00:00:00' last_updated: '2021-12-16T00:00:00'
- vendor: CodeBeamer - vendor: CodeBeamer
product: '' product: ''

Loading…
Cancel
Save