Software Updates

TrustKeeper Scan Engine Update for July 17, 2020

Written by | Jul 17, 2020 5:42:00 AM

Summary

The latest update to the TrustKeeper scan engine that powers our Trustwave Vulnerability Management product (including both internal and external vulnerability scanning) is now available. Enjoy!

New Vulnerability Test Highlights

Some of the more interesting vulnerability tests we added recently are as follows:

Apache

Atlassian

VMWare

OpenSSH

  • OpenSSH Algorithm Negotiation Information Disclosure (CVE-2020-14145)

Red Hat Enterprise Linux

Squid

  • Squid Proxy HTTP Request Cache Poisoning Vulnerability (SQUID-2020:7) (CVE-2020-15049)

Ubuntu

NTP

  • NTP ntpd CMAC keys memory leak Denial Of Service Vulnerability (CVE-2020-15025)

Samba

  • Samba AD DC CPU Resource Consumption Vulnerability (Security Releases 2020-07-02) (CVE-2020-10745)
  • Samba AD DC LDAP NULL-pointer De-reference and Use-after-free Vulnerabilities (Security Releases 2020-07-02) (CVE-2020-10730)
  • Samba AD DC LDAP Use-after-free Vulnerability (Security Releases 2020-07-02) (CVE-2020-10760)
  • Samba AD DC NBT Denial of Service (Security Releases 2020-07-02) (CVE-2020-14303)

How to Update?

All Trustwave customers using the TrustKeeper Scan Engine receive the updates automatically as soon as an update is available. No action is required.