Tech Wavo
  • Home
  • Technology
  • Computers
  • Gadgets
  • Mobile
  • Apps
  • News
  • Financial
  • Stock
Tech Wavo
No Result
View All Result

Libraseva urges users to patch now as it issues emergency fix following attacks

Tech Wavo by Tech Wavo
September 24, 2025
in Computers
0




  • Libraesva patched CVE-2025-59689, a medium-severity remote command execution vulnerability
  • Attack exploited compressed email attachments; threat actor likely a hostile foreign state
  • Versions below 5.0 are unsupported and require manual upgrades to stay secure

Libraesva Email Security Gateway (ESG) has patched a medium-severity vulnerability apparently abused by state-sponsored threat actors to achieve remote command execution (RCE) capabilities on targeted endpoints.

In a security advisory, Libraesva announced addressing a command injection flaw which can be triggered by a malicious email with a specially crafted compressed attachment.

The flaw enabled the execution of arbitrary commands as a non-privileged user, due to improper sanitation during the removal of active code from files contained in some compressed archive formats.


You may like

“Hostile” attack

The vulnerability is tracked as CVE-2025-59689 and was given a severity score of 6.1/10 (medium).

All versions, from 4.5 onward, were said to be vulnerable. Libraesva released patches for ESG 5.0, 5.1, 5.2, 5.3, 5.4, and 5.5, while versions below 5.0 are no longer supported and need to be manually upgraded.

One attack has been documented so far, the advisory further reads, and the attackers are apparently “a foreign hostile state entity”.

“The single‑appliance focus underscores the precision of the threat actor (believed to be a foreign hostile state) and highlights the importance of rapid, comprehensive patch deployment,” the company stressed.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

Libraesva advertises ESG as an advanced email security solution designed to protect organizations from threats like phishing, spam, malware, and business email compromise.

It filters inbound, outbound, and internal email traffic using both gateway-level and API-layer defenses, offering protection for platforms like Microsoft 365 and Google Workspace.

According to BleepingComputer, the company has “thousands” of clients among small and medium-sized organizations, as well as enterprises. In total, more than 200,000 users were said to be using Libraesva ESG, with the platform being particularly popular among entities in education, finance, and government.

You might also like

Previous Post

Google’s AI Search Live is now available to all US app users

Next Post

Kevin Rose on Digg, reinvention, and startup investing

Next Post
Kevin Rose on Digg, reinvention, and startup investing

Kevin Rose on Digg, reinvention, and startup investing

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

by Tech Wavo
September 24, 2025
0
A Former Apple Luminary Sets Out to Create the Ultimate GPU Software
Computers

Still, developers say that bringing code from Nvidia’s CUDA to ROCm isn’t a smooth process, which means they typically focus...

Read more

Oracle is reportedly looking to raise $15B in corporate bond sale

by Tech Wavo
September 24, 2025
0
Oracle is reportedly looking to raise $15B in corporate bond sale
Computers

Oracle is reportedly looking to raise funds just weeks after the company inked an historic AI infrastructure deal with OpenAI.   Cloud infrastructure giant Oracle is...

Read more

ExpressVPN’s latest Apple push brings a tablet-first design and one-click installs on Mac

by Tech Wavo
September 24, 2025
0
ExpressVPN’s latest Apple push brings a tablet-first design and one-click installs on Mac
Computers

After adding more controls on iPhone, ExpressVPN just rolled out more changes for users in the Apple ecosystemThe ExpressVPN iPad...

Read more

Instagram reaches 3 billion monthly users

by Tech Wavo
September 24, 2025
0
Instagram reaches 3 billion monthly users
Computers

Nearly 15 years in, Instagram has passed a new milestone: the app now reaches 3 billion monthly users, Mark Zuckerberg...

Read more

Site links

  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of use
  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of use

No Result
View All Result
  • Home
  • Technology
  • Computers
  • Gadgets
  • Mobile
  • Apps
  • News
  • Financial
  • Stock