Critical Vulnerabilities in Sophos XGS Firewalls fixed – 12/2024
2024-12-20
On 2024/12/19 Sophos has released following vulnerabilities XGS Firewall:
CVE-2024-12727 CVSS: 9.8
CVE-2024-12728 CVSS: 9.8
CVE-2024-12729 CVSS: 8.8
Sophos provides further information under the following link:
https://www.sophos.com/en-us/security-advisories/sophos-sa-20241219-sfos-rce
In customer environments set up by VIVAVIS, the relevant features of the XGS firewalls are not active or not released from the Internet.
In addition, Sophos has already released hotfixes for the vulnerabilities mentioned before the vulnerabilities were published; these are automatically installed on the devices. If no changes have been made to this default setting by the customer, no further action is required.
If you have further questions or need support, please contact our customer center.
Peter Schwark
RSS-Feed
Our RSS feed always keeps you up to date! This way, you’ll receive same-day notification when a new article has been posted to the IT Security Bulletin. Just enter the following link in your feed reader: https://www.vivavis.com/en/category/it-security-en/feed/
You can find out how to integrate the RSS feed into Outlook here.