CVE-2018-15691: Critical severity broadcom release automation vulnerability
Published Aug 30, 2018
·Updated
Insecure deserialization of a specially crafted serialized object, in CA Release Automation 6.5 and earlier, allows attackers to potentially execute arbitrary code.
Affected Software
3 affected components
Broadcom Release Automation>=6.3<6.3.0.9945
Broadcom Release Automation>=6.4<6.4.0.10119
Broadcom Release Automation>=6.5<6.5.0.10080
Remediation
Event History
Aug 30, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-15691?
CVE-2018-15691 is considered a high severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2018-15691?
To fix CVE-2018-15691, upgrade to CA Release Automation version 6.6 or later.
3
What systems are affected by CVE-2018-15691?
CVE-2018-15691 affects CA Release Automation versions 6.5 and earlier.
4
What type of vulnerability is CVE-2018-15691?
CVE-2018-15691 is classified as an insecure deserialization vulnerability.
5
Can CVE-2018-15691 lead to data breaches?
Yes, exploiting CVE-2018-15691 could potentially allow attackers to execute arbitrary code, leading to data breaches.