Third-Party Package Updates in Splunk User Behavior Analytics (UBA) - April 2025

Advisory ID: SVD-2025-0418

CVE ID:  Multiple

Published: 2025-04-29

Last Update: 2025-04-29

Description

Splunk remedied common vulnerabilities and exposures (CVEs) in Third Party Packages in Splunk User Behavior Analytics (UBA) version 5.4.2, including the following:

PackageRemediationCVESeverity
Body-parserUpgraded to 1.20.3CVE-2024-45590High
KubernetesUpgraded to 1.31.1MultipleHigh
Kubernetes DashboardUpgraded to 7.10MultipleHigh
Python tools1Upgraded to 3.12MultipleHigh
Python-idnaUpgraded to 3.10CVE-2024-3651High
OpenJDKUpgraded to 8u432MultipleMedium
serve-staticUpgraded to 1.16.0CVE-2024-43800Medium
SendUpgraded to 0.19.0CVE-2024-43799Medium
ExpressUpgraded to 4.20.0CVE-2024-43796Medium

1 Updated Python tools to 3.12 to remedy CVE-2019-11236, CVE-2020-26137, CVE-2022-40897, CVE-2022-40898, CVE-2023-43804, CVE-2023-45803, CVE-2024-37891, and CVE-2024-6345.

Solution

Upgrade Splunk User Behavior Analytics (UBA) to version 5.4.2 or higher.

Product Status

ProductBase VersionAffected VersionFix Version
Splunk User Behavior Analytics (UBA)5.4Below 5.4.25.4.2

Severity

For the CVEs in this list, Splunk adopted the national vulnerability database (NVD) common vulnerability scoring system (CVSS) rating to align with industry standards.