Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

NTP clock variables information disclosure

Sriram Subramanian April 29, 2020

Team,

Need to address the vulnerability "NTP clock variables information disclosure", may I know how do we check and fix this? I have jira 7.12 version and we are soon planning to upgrade to 8.6 in near future. however with the current version, vulnerability arose and may i know if there is a workaround to fix this or how do we do go about it? 

Regards

Sriram S 

2 answers

0 votes
Sriram Subramanian May 8, 2020

.

0 votes
Andy Heinzer
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
April 30, 2020

Hi Sriram,

I am confused by your question here. To the best of my knowledge Jira Service Desk has never had any such kind of security issue like the one you are describing.  We do track security issues in our products such as in https://www.atlassian.com/trust/security/advisories

And while there have been two security issues for Jira Service Desk since 2017

neither of these have anything to do with NTP clock variables.  Those terms are not something I believe Jira Service Desk has anything to do with.  Could you let me know more details about what CVE you are referring to here?

Regards,

Andy

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events