First published: Mon Jun 15 2020(Updated: )
PCRE. Multiple issues were addressed by updating to version 8.44.
Credit: CVE-2019-20838 CVE-2020-14155 cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/pcre | <8.44 | 8.44 |
Apple macOS | <11.0.1 | 11.0.1 |
Apple macOS | <11.2 | 11.2 |
macOS Catalina | ||
macOS Mojave | ||
IBM Security QRadar | <=7.5.0 GA | |
IBM Security QRadar | <=7.4.3 GA - 7.4.3 FP4 | |
IBM Security QRadar | <=7.3.3 GA - 7.3.3 FP10 | |
PCRE | <8.44 | |
macOS | <11.0.1 | |
GitLab | <12.10.13 | |
GitLab | <12.10.13 | |
GitLab | >=13.0.0<13.0.8 | |
GitLab | >=13.0.0<13.0.8 | |
GitLab | >=13.1.0<13.1.2 | |
GitLab | >=13.1.0<13.1.2 | |
Oracle Communications Cloud Native Core Policy | =1.15.0 | |
NetApp Active IQ Unified Manager for VMware vSphere | ||
NetApp Cloud Backup | ||
IBM Data ONTAP | ||
NetApp ONTAP Select Deploy | ||
NetApp SteelStore Cloud Integrated Storage | ||
All of | ||
NetApp H410C | ||
NetApp H410C Firmware | ||
All of | ||
NetApp H300S Firmware | ||
NetApp H300S Firmware | ||
All of | ||
NetApp H500e Firmware | ||
NetApp H500e Firmware | ||
All of | ||
NetApp H700S | ||
NetApp H700S | ||
All of | ||
NetApp H410S | ||
NetApp H410S Firmware | ||
Splunk Universal Forwarder | >=8.2.0<8.2.12 | |
Splunk Universal Forwarder | >=9.0.0<9.0.6 | |
Splunk Universal Forwarder | =9.1.0 | |
NetApp H410C | ||
NetApp H410C Firmware | ||
NetApp H300S Firmware | ||
NetApp H300S Firmware | ||
NetApp H500e Firmware | ||
NetApp H500e Firmware | ||
NetApp H700S | ||
NetApp H700S | ||
NetApp H410S | ||
NetApp H410S Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-14155 is a vulnerability in PCRE that could allow a remote attacker to execute arbitrary code on the system.
The severity of CVE-2020-14155 is high, with a severity value of 7.3.
macOS Big Sur versions up to 11.2, Apple Catalina, Apple Mojave, PCRE versions up to 8.44, IBM QRadar SIEM versions 7.5.0 GA, 7.4.3 GA - 7.4.3 FP4, and 7.3.3 GA - 7.3.3 FP10 are affected by CVE-2020-14155.
To fix CVE-2020-14155, update your software to the recommended versions: macOS Big Sur 11.0.1 or later, PCRE 8.45 or later, and IBM QRadar SIEM 7.5.0 GA or later.
You can find more information about CVE-2020-14155 in the references provided: Apple support page, Gentoo bug tracker, and the PCRE changelog.