Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. Blancco Drive Eraser (BDE)
    • Status: Potentially affected.
    • Details: The SSH The SSH connection based on the OpenSSH library is disabled by default. Customers must manually enable it using the Blancco Drive Eraser Configuration Tool or through the Blancco Drive Eraser UI under the settings. If enabled, it is recommended to ensure OpenSSH is updated to the latest version to avoid vulnerabilities, at the moment our Development team is working on patch release BDE 7.13 to update the OpenSSH and we will update this article with release data as we approach it.0 will have an updated version of OpenSSH that will not include this vulnerability.
    • Action:  Don’t enable SSH until the new is BDE 7.13 released.
  2. Blancco Management Portal (BMP)
    • Status: Not affected.
    • Details: BMP does not utilize OpenSSH.
    • Action: No action is required.
  3. Cloud.blancco.com
    • Status: Patched.
    • Details: The cloud service was patched in June to address OpenSSH vulnerabilities.
    • Action: No action is required.
  4. On-Premise Blancco Management Console (BMC)
    • Status: Potentially affected.
    • Details: We do not provide an operating system for BMC installations. Customers are responsible for installing Linux or Windows operating systems for BMC, which may include vulnerable OpenSSH versions.
    • Action: Customers should always ensure that their operating systems are updated to the latest version to mitigate any security risks.

...