What is the Attack?
Multiple cyberthreat actors seen exploiting the authentication bypass flaw in JetBrains TeamCity that could lead to remote code execution. If compromised, access to a TeamCity server would provide malicious actors with access to the software developer’s source code, signing certificates, and the ability to manipulate software compilation and deployment processes. The malicious actors could further use to conduct supply chain operations.
What is the Vendor Solution?
JetBrains released patch on September 18, 2023 to fix the affected TeamCity software on version 2023.05.4, which can be found here: https://www.jetbrains.com/teamcity/download/other.html.
What FortiGuard Coverage is available?
FortiGuard Labs has an IPS signature “JetBrains.TeamCity.CVE-2023-42793.Authentication.Bypass” (with default action is set to “block”) in place and has released Antivirus signatures for the known and related malware to the campaigns targeting the vulnerability (CVE-2023-42793).
More Stories
USN-7323-2: Linux kernel vulnerabilities
Attila Szász discovered that the HFS+ file system implementation in the Linux Kernel contained a heap overflow vulnerability. An attacker...
USN-7334-1: Firefox vulnerabilities
Multiple security issues were discovered in Firefox. If a user were tricked into opening a specially crafted website, an attacker...
chromium-134.0.6998.35-1.el10_1
FEDORA-EPEL-2025-2ac21d5aa2 Packages in this update: chromium-134.0.6998.35-1.el10_1 Update description: Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 *...
chromium-134.0.6998.35-1.fc41
FEDORA-2025-e94782e579 Packages in this update: chromium-134.0.6998.35-1.fc41 Update description: Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 *...
chromium-134.0.6998.35-1.el9
FEDORA-EPEL-2025-21b7af8662 Packages in this update: chromium-134.0.6998.35-1.el9 Update description: Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 *...
chromium-134.0.6998.35-1.fc40
FEDORA-2025-762804f16e Packages in this update: chromium-134.0.6998.35-1.fc40 Update description: Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 *...