ARC25-007: Desktop Laptop Option (DLO) Apache HTTP Server and Tomcat Vulnerabilities

book

Article ID: 100074403

calendar_today

Updated On:

Description

Impact of Desktop Laptop Option (DLO) Apache HTTP Server and Tomcat Vulnerabilities

{C}%3C!%2D%2D%7BC%7D%253C!%252D%252D%257BC%257D%25253C!%25252D%25252Dstartindex%25252D%25252D%25253E%252D%252D%253E%2D%2D%3E

Vulnerabilities were discovered in Arctera/Veritas Desktop Laptop Option (DLO) version 9.9 and prior due to the inclusion of versions of Apache HTTP Server and Apache Tomcat which have been found to have vulnerabilities.   These vulnerabilities have been recently added to the CISA published Known Exploitable Vulnerability (KEV) catalog, and customers should upgrade these components using the Remediation guidance below as soon as possible.

Affected Versions

Arctera/Veritas Desktop Laptop Option versions: 9.7, 9.8, 9.8.1, 9.8.2, 9.8.3 and 9.9. Earlier unsupported versions may be affected as well.

About Remediation

To check updates on the remediation steps, please refer to the Security Advisory here:  

www.veritas.com/content/support/en_US/security/ARC25-007

Environment

THE SECURITY ADVISORY IS PROVIDED "AS IS" AND ALL EXPRESS OR IMPLIED CONDITIONS, REPRESENTATIONS AND WARRANTIES, INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE OR NON-INFRINGEMENT, ARE DISCLAIMED, EXCEPT TO THE EXTENT THAT SUCH DISCLAIMERS ARE HELD TO BE LEGALLY INVALID.  VERITAS TECHNOLOGIES LLC SHALL NOT BE LIABLE FOR INCIDENTAL OR CONSEQUENTIAL DAMAGES IN CONNECTION WITH THE FURNISHING, PERFORMANCE, OR USE OF THIS DOCUMENTATION.  THE INFORMATION CONTAINED IN THIS DOCUMENTATION IS SUBJECT TO CHANGE WITHOUT NOTICE.

 

Issue/Introduction

ARC25-007: Desktop Laptop Option (DLO) Apache HTTP Server and Tomcat Vulnerabilities