Security Vulnerabilities in all versions of the CodeMeter User Runtime software

Security Vulnerabilities in all versions of the CodeMeter User Runtime software

Summary

We were informed by our supplier Wibu-Systems about two severe and critical Security Issues within their product the "CodeMeter User Runtime" software.

A new version 7.21a of the CodeMeter User Runtime software is available from Wibu Systems from 15.06.2021, that fixes these vulnerabilities.

The vulnerabilities have been published with the following IDs:

CVE-2021-20093
CVE-2021-20094

For more information, please see the COPA-DATA security vulnerability announcement CD_SVA_2021_1 down below.

Description

We were informed by our supplier Wibu-Systems about two severe and critical Security Issues within their product the "CodeMeter User Runtime" software.

A new version 7.21a of the CodeMeter User Runtime software is available from Wibu Systems from 15.06.2021, that fixes these vulnerabilities.

The vulnerabilities have been published with the following IDs:

CVE-2021-20093
CVE-2021-20094

For more information, please see the COPA-DATA security vulnerability announcement CD_SVA_2021_1 down below.

Solution

Please note that the build update does not update the CodeMeter User Runtime software.

A manual update of the CodeMeter User Runtime software is required.

For more information, please see the COPA-DATA security vulnerability announcement CD_SVA_2021_1 down below.



Issue Number: CD_SVA_2021_1
Fixed on Date: 15.6.2021
Versions: 8.20 0 BUILD 84627 | 8.10 0 BUILD 84784 | 8.00 0 BUILD 84785 | 7.60 0 BUILD 83995 | 7.50 0 BUILD 68981 | 7.20 0 BUILD 68329