Security updates Atlassian: Attacks on Bamboo Data Center and Server possible
Attackers can attack Atlassian's Bitbucket Data Center and Server with malicious code, among other things.
(Image: Artur Szczybylo/Shutterstock.com)
Atlassian developers have closed several security vulnerabilities in Bamboo Data Data Center and Server, Bitbucket Data Center and Server and Jira Software Data Center and Server. So far there have been no reports of attacks on the vulnerabilities.
Install security patches
If attackers successfully exploit the vulnerabilities, they can create DoS states(CVE-2024-7254"high", CVE-2024-47072"high") or even compromise systems after malicious code attacks(CVE-2024-47561"high").
Videos by heise
It remains unclear how attacks could take place. Atlassian assures that it has closed the vulnerabilities in the following versions:
- Bamboo Data Center and Server 9.2.21, 9.6.7, 9.6.10, 10.0.2, 10.2.1
- Bitbucket Data Center and Server 8.9.21, 8.19.11
- Jira Software Data Center and Server 9.4.28, 9.12.15, 9.17.4, 10.1.2
(des)