Skyhigh Client Proxy Security Bulletin
About the Security Bulletin
This Skyhigh Client Proxy Security Bulletin addresses the three fixed vulnerabilities; CVE-2024-0311, CVE-2024-0312, and CVE-2024-0313 in Skyhigh Client Proxy 4.9.0.
Summary
Product |
Impacted Versions |
CVE ID |
Impact of Vulnerabilities |
Severity Ratings |
CVSS v3.1 |
---|---|---|---|---|---|
Skyhigh Client Proxy |
4.8.1 and earlier |
CVE-2024-0311 |
CWE-622: Improper Validation of Function Hook Arguments |
Medium
|
5.5/5.0 |
4.8.1 and earlier
|
CVE-2024-0312 |
CWE-622: Improper Validation of Function Hook Arguments |
Medium
|
5.5/5.0 |
|
|
4.8.1 and earlier
|
CVE-2024-0313 |
CWE-670: Always-Incorrect Control Flow Implementation |
Medium |
5.5/5.0 |
Recommendations |
Install or upgrade to the latest versions listed below |
||||
Security Bulletin Replacement |
None |
||||
Location of updated software |
Vulnerabilities Fixed
This Skyhigh Client Proxy release includes updates addressing publicly disclosed CVEs, regardless of whether a CVE has been shown to impact users.
The following medium-level CVEs (CVSS 3.1 >= 5.5) were involved: