Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Bitbucket vulnerable to Terrapin weakness?

DW
Contributor
February 12, 2024

Hello,

out security team reported, that the integrated SSH server in Bitbucket is vulnerable to a weakness called terrapin, which allows man-in-the-middle-attack.

What is the status regarding a security update? Bitbucket 7.21.22 was released but if we belive the changelog, there is no terrapin fix inside.

3 comments

Comment

Log in or Sign up to comment
Jodie Vlassis
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
February 12, 2024

Hi @DW 

Please email security to follow up.

Thank you

Jodie

Aimee White
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
February 13, 2024

This is worrying. 

Like # people like this
Colin_McDermott
Contributor
September 26, 2024

We really need a guide or better information on this.

TAGS
AUG Leaders

Atlassian Community Events