Blog

European Commission Digital

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The following list indicates all versions of eDelivery sample software that may be impacted if used in the configuration described in the announcement:

SMP, BDMSL and older versions of Domibus are not affected as they do not support JDK 9 or higher, but they do use the vulnerable libraries. Note also the announcement indicates that "there may be other ways to exploit [the vulnerability] that have not been reported yet."

...

Domibus is the sample software provided by the European Commission to implement an eDelivery AS4 Access Point for the interoperable, secure and reliable exchange of data. It is based on the the eDelivery AS4 profile, an open technical specification for the secure, web-based, payload-agnostic exchange of data or documents.

SMP is the sample software provided by the European Commission to implement an eDelivery Service Metadata Publisher (SMP) for publishing and retrieving data necessary for an eDelivery party to dynamically configure its system for message exchange with counterparties using eDelivery. It is based on the the eDelivery SMP profile, an open technical specification for publishing service metadata within a 4-corner network.

...