-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 cPanel TSR-2018-0002 Announcement cPanel has released new builds for all public update tiers. These updates provide targeted changes to address security concerns with the cPanel & WHM product. These builds are currently available to all customers via the standard update system. cPanel has rated these updates as having CVSSv3 scores ranging from 3.8 to 8.2. Information on cPanel's security ratings is available at https://go.cpanel.net/securitylevels. If your deployed cPanel & WHM servers are configured to automatically update when new releases are available, then no action is required. Your systems will update automatically. If you have disabled automatic updates, then we strongly encourage you to update your cPanel & WHM installations at your earliest convenience. RELEASES The following cPanel & WHM versions address all known vulnerabilities: 70.0.23 & Greater 68.0.33 & Greater 62.0.42 & Greater The latest public releases of cPanel & WHM for all update tiers are available at http://httpupdate.cpanel.net. SECURITY ISSUE INFORMATION The cPanel Security Team and independent security researchers identified the resolved security issues. There is no reason to believe that these vulnerabilities have been made known to the public. As such, cPanel will only release limited information about the vulnerabilities at this time. Once sufficient time has passed, allowing cPanel & WHM systems to automatically update to the new versions, cPanel will release additional information about the nature of the security issues. This Targeted Security Release addresses 27 vulnerabilities in cPanel & WHM software versions 70, 68, and 62. Additional information is scheduled for release on March 20, 2017. For information on cPanel & WHM Versions and the Release Process, read our documentation at: https://go.cpanel.net/versionformat -----BEGIN PGP SIGNATURE----- iQJIBAEBCgAyFiEEtnCbTMb0IHf2mEGRlSG+3KvZTd8FAlqvyXcUHHNlY3VyaXR5 QGNwYW5lbC5uZXQACgkQlSG+3KvZTd9TpBAAyA4IVE5cyNFWZlwSh/TJdrv4yxPY Az4rWQMFKgFWGPvLcqW4yg8asirX5jDjSz9NSWDXwjFgozNYLej26TXFsahMUSxu SGwWGv4K09FQGiIg4BYCd8BnA3QRT8NX80p/aKoz5dfGsjTvtrozk7rS/TqTWNAq rfsMoZCL4m4dAM1zabbRmXaRcRhFD73uMPvBp1aWwsDmZ3LWSA642k+57QdDU1qV PFbjd+66JfhVRBtcsK8lSKKvP7NOae+T1NMlSuJaErFjMPkN5/Ujoy3yo4UXqnFx PnxOvjRzhv2ClAqBOQndxyVn6VISgyO1IhRV0dwpvQGSiaSKXb/vo0cCs8Uwpd0u SGL0ZDeBFtjNaBlrVGyL/GN+ENH1zYQHfJlifB86E5oQqLg+Wtcef0K4rwggMjW9 lX6UZDa8cCEQhuY6zechrbvEezwh+hZUMMkJXl0+4PxirJGraEtkXQdl69txsEGV 5NQR5x4rUdlHpaUNQ9OUi/TK1gvuo1R1rq3FBPVtySxe8W0UMbAk6nyb3ugW7vnb x4n3+M2m6YSg628Om9tN8nFydE0WdS81xwzSZi0T7x3qo0TIW/52+mdMIy1wYqtt b7HHz80p4rjK5gKiiRuGIwwqTtM1N5tZdHPq76l50iVc6jZ43Ls2PvHd1I9ytGDx 26MxXrggJxwW/Kw= =IpHK -----END PGP SIGNATURE-----