Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

We have jira service desk. CVE-2022-0540 makes no mention.

Nick Urbanik
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
April 20, 2022

Are we vulnerable to CVE-2022-0540?  If so, which product should we upgrade to, since I do not see Jira Service Desk mentioned anywhere in your product range.

2 answers

1 accepted

2 votes
Answer accepted
Andy Heinzer
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
April 21, 2022

Jira Service Desk was renamed to Jira Service Management.  And we do list it in https://confluence.atlassian.com/jira/jira-security-advisory-2022-04-20-1115127899.html

From that page:

Affected Jira Service Management Versions

This includes the following products:

  • Jira Service Management Server
  • Jira Service Management Data Center

  • All versions before 4.13.18
  • 4.14.x
  • 4.15.x
  • 4.16.x
  • 4.17.x
  • 4.18.x
  • 4.19.x
  • 4.20.x before 4.20.6
  • 4.21.x

Fixed Jira Service Management Versions

  • 4.13.x >= 4.13.18
  • 4.20.x >= 4.20.6
  • All versions >= 4.22.0
0 votes
Jack Brickey
Community Champion
April 20, 2022

Hi @Nick Urbanik ,

this is pretty new info. Per this post I would recommend contacting Atlassian Support.

Suggest an answer

Log in or Sign up to answer