First published: Thu Aug 30 2018(Updated: )
Insecure deserialization of a specially crafted serialized object, in CA Release Automation 6.5 and earlier, allows attackers to potentially execute arbitrary code.
Credit: vuln@ca.com
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Release Automation | >=6.3<6.3.0.9945 | |
Broadcom Release Automation | >=6.4<6.4.0.10119 | |
Broadcom Release Automation | >=6.5<6.5.0.10080 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-15691 is considered a high severity vulnerability due to its potential for arbitrary code execution.
To fix CVE-2018-15691, upgrade to CA Release Automation version 6.6 or later.
CVE-2018-15691 affects CA Release Automation versions 6.5 and earlier.
CVE-2018-15691 is classified as an insecure deserialization vulnerability.
Yes, exploiting CVE-2018-15691 could potentially allow attackers to execute arbitrary code, leading to data breaches.