Category: Technical Notes
-
Zero-day “Spring4Shell”
Since this week there is a new zero-day vulnerability in the Spring framework. Please note that we are aware of this and currently analyzing how far the PTV xServer is affected.You can find the official announcement here: https://spring.io/blog/2022/03/31/spring-framework-rce-early-announcementWe like to share the current state of our analysis with you.… -
PTV xServer internet – SSL certificate update
We would like to inform you that we plan to update our SSL certificates we will start with the production updates on March 23rd, 2022.
We plan to have all production clusters updated on March 28th, 2022.This change is needed because PTV changed the legal form to PTV Planung Transport Verkehr GmbH.…
-
PTV xServer internet – PTV America City Map cluster Here with API Version 1 – deactivation of TLS 1.0 and 1.1
We would like to inform you that we plan to deactivate TLS 1.0 and 1.1 on the PTV America City Map [Here] production cluster with API Version 1 on March 22nd , 2022.
The following tasks will be completed in the scope of this maintenance:- Deactivation of Transport Layer Security (TLS) 1.0 and 1.1
- Map update to PTV America City Map 2022.2H
The deactivation of TLS 1.0 and 1.1 is a major change that may have effect on your application.…
-
PTV xServer internet – PTV Europe and World City Map cluster TomTom with API Version 1 – deactivation of TLS 1.0 and 1.1
We would like to inform you that we plan to deactivate TLS 1.0 and 1.1 on the PTV World and Europe City Map [TomTom] production cluster with API Version 1 on March 8th and 10th, 2022.
The following tasks will be completed in the scope of this maintenance:March 8th, 2022: PTV World City Map [TomTom] production
- Deactivation of Transport Layer Security (TLS) 1.0 and 1.1
- Map update to PTV World City Map 2022.1T
- PTV xServer update to newest xServer API version 1
March 10th, 2022: PTV Europe City Map [TomTom] production
- Deactivation of Transport Layer Security (TLS) 1.0 and 1.1
The deactivation of TLS 1.0 and 1.1 is a major change that may have effect on your application.…
-
Critical vulnerability in Log4j
The latest update to this post is available here!
On Friday 09.12.21 a critical vulnerability (Log4Shell) in the widely used Java library Log4j has been identified. According to the assessment of many authorities, this leads to an extremely critical threat situation, which is why, among others, the Federal Office for Information Security (BSI) in Germany has upgraded its existing cyber security warning to warning level red (see Common Vulnerabilities and Exposures and BSI).…