Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in

Bitbucket vulnerable to Terrapin weakness?

DW February 12, 2024

Hello,

out security team reported, that the integrated SSH server in Bitbucket is vulnerable to a weakness called terrapin, which allows man-in-the-middle-attack.

What is the status regarding a security update? Bitbucket 7.21.22 was released but if we belive the changelog, there is no terrapin fix inside.

2 answers

1 accepted

Suggest an answer

Log in or Sign up to answer
2 votes
Answer accepted
Aimee White February 13, 2024

This is worrying. 

0 votes
Jodie Vlassis
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
February 12, 2024

Hi @DW 

Please email security@atlassian.com to follow up.

Thank you

Jodie

TAGS
AUG Leaders

Atlassian Community Events