Uploaded image for project: 'Bitbucket Data Center'
  1. Bitbucket Data Center
  2. BSERV-20060

Upgrade logback in LTS to patch CVE-2024-12789 and CVE-2024-12801

XMLWordPrintable

    • We collect Bitbucket feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

      Issue Summary

      Versions of logback used in Bitbucket DC 8.19 (LTS), 9.4 (LTS), contain vulnerabilities: CVE-2024-12789 and CVE-2024-12801.

      Expected Results

      Update logback versions to patch CVE-2024-12789 and CVE-2024-12801.

      • Update logback in Bitbucket DC 8.19 to 1.3.15+
      • Update logback in Bitbucket DC 9.4 to 1.5.13+

              7b141bfa1ff8 Nick Divall
              7b141bfa1ff8 Nick Divall
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: