cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
875
Views
25
Helpful
8
Replies

Cisco Jabber Desktop and Mobile Client Software Vulnerabilities

akram.root
Level 4
Level 4

Hello all,

 

I would to ask you about this  Vulnerabilities attacked cisco jabber .

 

I use a cisco jabber 11.7 for windows on cucm11.5 , what do you suggest to me to upgrade on a fixed version .

 

Best regards

Akram

 

 

8 Replies 8

Jaime Valencia
Cisco Employee
Cisco Employee

You don't mention exactly what vulnerability you're asking about, in any case, all you need to do is read the information from the page, if there are already fixed releases available, they will be listed there.

HTH

java

if this helps, please rate

The current recommended version for Windows is 12.9.5.



Response Signature


For Windows there are already 14.0.0.55549 ))

Never trust a .0 release @sergey.



Response Signature


Kathy N.
VIP
VIP

The 14.0 release actually fixes a major vulnerability in the Jabber app.  Received this notification last week about it:

 

Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for MacOS, and Cisco Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying operating system with elevated privileges, access sensitive information, intercept protected network traffic, or cause a denial of service (DoS) condition. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.

 

Details related to this advisory can be found here: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cisco-jabber-PWrTATTC 

 

Vulnerable Products:  These vulnerabilities affect Cisco Jabber for Windows, Cisco Jabber for MacOS, and Cisco Jabber for mobile platforms.



Response Signature


The defect in question should also be addressed in the 12.9.5 version for Windows and in the 12.9.6 version for Mac.



Response Signature


Version 12.9.5 has sighnificant bug. If I open settings or get desktop share from remote user, during a call, main window of Cisco Jabber always on top of that windows. Helps only minimization of main window CJ.

Sergey 1907
Level 1
Level 1

I installed 14.0 on Windows and MacOS and did not notice any differences from 12.9