Configuration Automation product Curl Vulnerability (CVE-2023-38545 & CVE-2023-38546)
search cancel

Configuration Automation product Curl Vulnerability (CVE-2023-38545 & CVE-2023-38546)

book

Article ID: 274811

calendar_today

Updated On:

Products

CA Configuration Automation

Issue/Introduction

high severity vulnerability found in the curl library (libcurl) and CCA uses libcurl.

 

Environment

Releases: 12.9

Cause

https://curl.se/docs/CVE-2023-38545.html

Resolution

Based on initial review, curl is used in NDG(Network Discovery Gateway). It uses 7.32.0 version and is not impacted by the current vulnerability

Additional Information

This KB will be updated on a continuous basis as the situation evolves.