Desktop Central is not vulnerable to CVE 2020-11993

Is Desktop Central vulnerable to this CVE?

No, Desktop Central is not vulnerable to CVE-2020-11993  vulnerability. Read the document fully for further details.

What was the issue?

Enabling Trace/Debug for the HTTP/2 module in certain traffic edge patterns, causes logging statements to be made on wrong connections resulting into concurrent use of memory. This is applicable for Apache HTTP versions 2.4.20 to 2.4.43.

Why Desktop Central is not vulnerable to this CVE?

CVE-2020-11993 will not affect Desktop Central as HTTP/2 requests are not used.

Future plan for Upgrade

Although the Desktop Central is not vulnerable to this CVE, we'll be upgrading to the latest Apache version during our regular third-party components upgrade cycle.