[announce]Updated - Security Advisory 2021-10 for OTRS

2021-09-06 Thread Bernd Maus


Security Advisories
Dear reader,

The following security fix/es was/were updated:
OTRS Security Advisory 2021-10

ID: OSA-2021-10
Date: 2021-07-26 (initial), 2021-09-06 (update)
Title: Support Bundle includes S/Mime and PGP keys and secrets
Severity: 5.2 MEDIUM
Product: OTRS 8.0.x, OTRS 7.0.x
Fixed in: OTRS 8.0.16, OTRS 7.0.29
FULL CVSS v3.1 VECTOR: CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:N
References: CVE-2021-21440, CVE-2021-36096
Ticket#2021050342000331, Ticket#2021072642001436
To read the entire Security Advisory/Advisories, please follow this link:
https://otrs.com/overview-release-notes-security-advisories/security-advisories/
  

Kind regards, 
Your OTRS release team
 
Subscribe to the OTRS Newsletter.

Read about OTRS service management solutions, product features, and interesting 
tips from our experts every month. Simply select your desired language.
German 
 
English 

Spanish 
 
Portuguese 

     
  
  

Visit www.otrs.com 
 
or contact us.  

OTRS AG

Zimmersmühlenweg 11
61440 Oberursel 
Germany
+49 6172 681988 0



smime.p7s
Description: S/MIME cryptographic signature
--
___
announce mailing list -- announce@lists.otrs.org
To unsubscribe send an email to announce-le...@lists.otrs.org
To manage your subscription or browse the message archive visit:
  https://lists.otrs.org/postorius/lists/announce.lists.otrs.org/


[announce]New Patches Have Been Released For OTRS

2021-09-06 Thread Bernd Maus


Release Notes
Dear customers, 

We have improved OTRS even further, so we are announcing the following patch 
level releases today. Thank you for helping to improve OTRS. 
Release date: September 6, 2021
Patch/Patches: 

OTRS 8.0.16
OTRS 7.0.29
OTRS::ITSM Module 7.0.29
OTRS Survey 8.0.3


You’ll find the specific release notes detailed under 
https://otrs.com/overview-release-notes-security-advisories/release-notes/ 

OTRS Group managed customers are updated by our Customer Solution Team. OTRS 
On-Premise customers should obtain the new product version from our exclusive 
download area at portal.otrs.com 
.
Kind regards, 
Your OTRS release team
Subscribe to the OTRS Newsletter.

Read about OTRS service management solutions, product features, and interesting 
tips from our experts every month. Simply select your desired language.
German 

 
English 

Spanish 

 
Portuguese 

     
  
  

Visit www.otrs.com 

 or contact us.  

OTRS AG

Zimmersmühlenweg 11
61440 Oberursel 
Germany
+49 6172 681988 0



smime.p7s
Description: S/MIME cryptographic signature
--
___
announce mailing list -- announce@lists.otrs.org
To unsubscribe send an email to announce-le...@lists.otrs.org
To manage your subscription or browse the message archive visit:
  https://lists.otrs.org/postorius/lists/announce.lists.otrs.org/


[announce]New Security Updates for OTRS

2021-09-06 Thread Bernd Maus


Security Advisories
Dear reader,

The following security fix/es was/were made:
OTRS Security Advisory 2021-18

ID: OSA-2021-18
Date: 2021-09-06
Title: User enumeration issue using "lost password" feature
Severity: 5.3 MEDIUM
Product: OTRS 7.0.x
Fixed in: OTRS 7.0.29
FULL CVSS v3.1 VECTOR: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
References: CVE-2021-36095
OTRS Security Advisory 2021-17

ID: OSA-2021-17
Date: 2021-09-06
Title: XSS attack in appointment edit popup screen
Severity: 5.7. MEDIUM
Product: OTRS 7.0.x
Fixed in: OTRS 7.0.29
FULL CVSS v3.1 VECTOR: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N
References: CVE-2021-36094
OTRS Security Advisory 2021-16

ID: OSA-2021-16
Date: 2021-09-06
Title: DoS attack using PostMaster filters
Severity: 5.3 MEDIUM
Product: OTRS 8.0.x, OTRS 7.0.x
Fixed in: OTRS 8.0.16, OTRS 7.0.29
FULL CVSS v3.1 VECTOR: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
References: CVE-2021-36093
To read the entire Security Advisory/Advisories, please follow this link:
https://otrs.com/overview-release-notes-security-advisories/security-advisories/
  

Kind regards, 
Your OTRS release team
 
Subscribe to the OTRS Newsletter.

Read about OTRS service management solutions, product features, and interesting 
tips from our experts every month. Simply select your desired language.
German 
 
English 

Spanish 
 
Portuguese 

     
  
  

Visit www.otrs.com 
 
or contact us.  

OTRS AG

Zimmersmühlenweg 11
61440 Oberursel 
Germany
+49 6172 681988 0




smime.p7s
Description: S/MIME cryptographic signature
--
___
announce mailing list -- announce@lists.otrs.org
To unsubscribe send an email to announce-le...@lists.otrs.org
To manage your subscription or browse the message archive visit:
  https://lists.otrs.org/postorius/lists/announce.lists.otrs.org/