<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Vulnerability Reported in linux server, which Splunk application running on the server in Installation</title>
    <link>https://community.splunk.com/t5/Installation/Vulnerability-Reported-in-linux-server-which-Splunk-application/m-p/669769#M13430</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/262789"&gt;@Ka21&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Splunk periodically releases updates to address vulnerabilities in libraries&amp;nbsp;&lt;EM&gt;shipped with Splunk products&lt;/EM&gt;. Browse to &amp;lt;&lt;A href="https://advisory.splunk.com/" target="_self"&gt;https://advisory.splunk.com/&lt;/A&gt;&amp;gt; to review bulletins labeled "Third Party Package Updates in Splunk Enterprise" and "Splunk Universal Forwarder Third-Party Updates."&lt;/P&gt;&lt;P&gt;For November 2023:&lt;/P&gt;&lt;P&gt;&lt;A class="" href="https://advisory.splunk.com/advisories/SVD-2023-1105" target="_blank" rel="noopener"&gt;November 2023 Third Party Package updates in Splunk Enterprise&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="" href="https://advisory.splunk.com/advisories/SVD-2023-1107" target="_blank" rel="noopener"&gt;November 2023 Splunk Universal Forwarder Third-Party Updates&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="" href="https://advisory.splunk.com/advisories/SVD-2023-1102" target="_blank" rel="noopener"&gt;Third Party Package Update in Splunk Add-on for Google Cloud Platform&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="" href="https://advisory.splunk.com/advisories/SVD-2023-1101" target="_blank" rel="noopener"&gt;Third Party Package Update in Splunk Add-on for Amazon Web Services&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Re: Java, you'll need to review individual Java-based apps and add-ons--Splunk ITSI, Splunk DB Connect, etc.--for compatibility and upgrade the JRE as needed.&lt;/P&gt;</description>
    <pubDate>Sun, 26 Nov 2023 23:38:46 GMT</pubDate>
    <dc:creator>tscroggins</dc:creator>
    <dc:date>2023-11-26T23:38:46Z</dc:date>
    <item>
      <title>Vulnerability Reported in linux server, which Splunk application running on the server</title>
      <link>https://community.splunk.com/t5/Installation/Vulnerability-Reported-in-linux-server-which-Splunk-application/m-p/669737#M13423</link>
      <description>&lt;P&gt;The below Vulnerabilities reported in linux servers and let me know if any impact on Splunk application, if we remediate the vulnerabilities based on solution provided.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;TABLE width="715"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD width="715"&gt;Amazon Linux 2 : polkit (ALAS-2022-1745)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : libgcrypt (ALAS-2022-1769)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : gzip, xz (ALAS-2022-1782)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : vim (ALAS-2022-1829)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : zlib (ALAS-2022-1849)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : aide (ALAS-2022-1850)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : pcre2 (ALAS-2022-1871)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : e2fsprogs (ALAS-2022-1884)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : sqlite (ALAS-2023-1911)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : libtasn1 (ALAS-2023-1908)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : freetype (ALAS-2023-1909)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : libpng (ALAS-2023-1904)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : python-lxml (ALAS-2023-1956)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : nss-util (ALAS-2023-1954)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : nss-softokn (ALAS-2023-1955)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : python (ALAS-2023-1980)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : cpio (ALAS-2023-1972)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : curl (ALAS-2023-1986)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : nss (ALAS-2023-1992)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : babel (ALAS-2023-2010)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : systemd (ALAS-2023-2004)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : jasper (ALAS-2023-2018)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : gd (ALAS-2023-2044)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : perl (ALAS-2023-2034)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : libwebp (ALAS-2023-2048)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : mariadb (ALAS-2023-2057)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : sysstat (ALAS-2023-2068)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : rsync (ALAS-2023-2074)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : dnsmasq (ALAS-2023-2069)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : glusterfs (ALAS-2023-2071)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : pcre (ALAS-2023-2082)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : git (ALAS-2023-2072)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : libfastjson (ALAS-2023-2079)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : openldap (ALAS-2023-2095)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : perl-HTTP-Tiny (ALAS-2023-2093)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : glib2 (ALAS-2023-2107)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : perl-Pod-Perldoc (ALAS-2023-2094)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : ncurses (ALAS-2023-2096)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : squashfs-tools (ALAS-2023-2152)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : fribidi (ALAS-2023-2116)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : tcpdump (ALAS-2023-2119)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : libX11 (ALAS-2023-2129)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : c-ares (ALAS-2023-2127)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : zstd (ALAS-2023-2140)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : SDL2 (ALAS-2023-2162)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : bluez (ALAS-2023-2167)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : avahi (ALAS-2023-2175)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : nghttp2 (ALAS-2023-2180)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : ca-certificates (ALAS-2023-2224)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : amazon-ssm-agent (ALAS-2023-2238)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : shadow-utils (ALAS-2023-2247)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : libssh2 (ALAS-2023-2257)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : libjpeg-turbo (ALAS-2023-2254)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : expat (ALAS-2023-2280)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : kernel (ALAS-2023-2264)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : flac (ALAS-2023-2283)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : python-pillow (ALAS-2023-2286)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Amazon Linux 2 : bind (ALAS-2023-2273)&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Oracle Java JRE Unsupported Version Detection (Unix)&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;</description>
      <pubDate>Sun, 26 Nov 2023 13:26:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Vulnerability-Reported-in-linux-server-which-Splunk-application/m-p/669737#M13423</guid>
      <dc:creator>Ka21</dc:creator>
      <dc:date>2023-11-26T13:26:26Z</dc:date>
    </item>
    <item>
      <title>Re: Vulnerability Reported in linux server, which Splunk application running on the server</title>
      <link>https://community.splunk.com/t5/Installation/Vulnerability-Reported-in-linux-server-which-Splunk-application/m-p/669769#M13430</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/262789"&gt;@Ka21&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Splunk periodically releases updates to address vulnerabilities in libraries&amp;nbsp;&lt;EM&gt;shipped with Splunk products&lt;/EM&gt;. Browse to &amp;lt;&lt;A href="https://advisory.splunk.com/" target="_self"&gt;https://advisory.splunk.com/&lt;/A&gt;&amp;gt; to review bulletins labeled "Third Party Package Updates in Splunk Enterprise" and "Splunk Universal Forwarder Third-Party Updates."&lt;/P&gt;&lt;P&gt;For November 2023:&lt;/P&gt;&lt;P&gt;&lt;A class="" href="https://advisory.splunk.com/advisories/SVD-2023-1105" target="_blank" rel="noopener"&gt;November 2023 Third Party Package updates in Splunk Enterprise&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="" href="https://advisory.splunk.com/advisories/SVD-2023-1107" target="_blank" rel="noopener"&gt;November 2023 Splunk Universal Forwarder Third-Party Updates&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="" href="https://advisory.splunk.com/advisories/SVD-2023-1102" target="_blank" rel="noopener"&gt;Third Party Package Update in Splunk Add-on for Google Cloud Platform&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="" href="https://advisory.splunk.com/advisories/SVD-2023-1101" target="_blank" rel="noopener"&gt;Third Party Package Update in Splunk Add-on for Amazon Web Services&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Re: Java, you'll need to review individual Java-based apps and add-ons--Splunk ITSI, Splunk DB Connect, etc.--for compatibility and upgrade the JRE as needed.&lt;/P&gt;</description>
      <pubDate>Sun, 26 Nov 2023 23:38:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Vulnerability-Reported-in-linux-server-which-Splunk-application/m-p/669769#M13430</guid>
      <dc:creator>tscroggins</dc:creator>
      <dc:date>2023-11-26T23:38:46Z</dc:date>
    </item>
    <item>
      <title>Re: Vulnerability Reported in linux server, which Splunk application running on the server</title>
      <link>https://community.splunk.com/t5/Installation/Vulnerability-Reported-in-linux-server-which-Splunk-application/m-p/669778#M13431</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;it's hard to say if anyone of those is directly affected to splunk, but usually it's a best practices to keep your OS and also other products up to date to avoid any security issues. You already have found Splunk's own security issue page which also should fulfil as soon as possible.&lt;/P&gt;&lt;P&gt;r. Ismo&lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2023 07:33:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Installation/Vulnerability-Reported-in-linux-server-which-Splunk-application/m-p/669778#M13431</guid>
      <dc:creator>isoutamo</dc:creator>
      <dc:date>2023-11-27T07:33:20Z</dc:date>
    </item>
  </channel>
</rss>

