Security Vulnerabilities in the CodeMeter User Runtime software versions 7.00 and lower

Security Vulnerabilities in the CodeMeter User Runtime software versions 7.00 and lower

Summary

We were informed by our supplier Wibu-Systems about six severe and critical Security Issues within their product the "CodeMeter User Runtime" software.

A new version 7.10a of the CodeMeter User Runtime software is available from Wibu Systems from 16.09.2020, that fixes these vulnerabilities.

The vulnerabilities have been published with the following IDs:

CVE-2020-14509
CVE-2020-14513
CVE-2020-14515
CVE-2020-14517
CVE-2020-14519
CVE-2020-16233


For more information, please see the COPA-DATA security vulnerability announcement 2020#1

Description

We were informed by our supplier Wibu-Systems about six severe and critical Security Issues within their product the "CodeMeter User Runtime" software.

A new version 7.10a of the CodeMeter User Runtime software is available from Wibu Systems from 16.09.2020, that fixes these vulnerabilities.

The vulnerabilities have been published with the following IDs:

CVE-2020-14509
CVE-2020-14513
CVE-2020-14515
CVE-2020-14517
CVE-2020-14519
CVE-2020-16233


For more information, please see the COPA-DATA security vulnerability announcement 2020#1

Solution

Please note that the build update does not update the CodeMeter User Runtime software.

A manual update of the CodeMeter User Runtime software is required.

For more information, please see the COPA-DATA security vulnerability announcement 2020#1



Issue Number: CD_SVA_2020_1
Fixed on Date: 1.6.2020
Versions: 8.20 0 BUILD 67700 | 8.10 0 BUILD 67751 | 8.00 0 BUILD 67513 | 7.60 0 BUILD 66634 | 7.50 0 BUILD 64982 | 7.20 0 BUILD 66073