-
×InformationNeed Windows 11 help?Check documents on compatibility, FAQs, upgrade information and available fixes.
Windows 11 Support Center. -
-
×InformationNeed Windows 11 help?Check documents on compatibility, FAQs, upgrade information and available fixes.
Windows 11 Support Center. -
- HP Community
- Poly Video Conferencing
- Meeting Room Solutions
- How to remediate CVE-2019-20372 vulnerability

Create an account on the HP Community to personalize your profile and ask a question
10-25-2024 02:48 PM
Please how to remediate CVE-2019-20372 vulnerability in Code AV Bar Controllers TC8. Thanks
Solved! Go to Solution.
Accepted Solutions
10-26-2024 01:38 AM
Hello @William4949 ,
Welcome to the HP community.
Unfortunately, your post does not contain the currently used Software version for the HP Poly product or the Partner application version you use, such as Microsoft Teams, Zoom Rooms, Poly SIP/H.323 mode, etc.
This is important especially in the future when someone finds this post in days, months, or years to come.
Please do not simply edit the original post but reply with the versions.
In the FAQ or the Read 1st section, we remind users why this is important.
CVE-2019-20372 documents an issue around NGINX being fronted by a load balancer which is not an applicable use case for TC8 or TC10.
I would suggest you wait for the next PolyOS 4.3.3 release, re-run any security testing, and if you still see an issue reach out to our support team as already suggested by @M_Salman
Best regards
Steffen Baier
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.
Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN
10-25-2024 08:01 PM
Hi @William4949, Welcome to Poly HP Support Community.
Due to limited support, I would request you contact our HP Support and our Support Engineers should be able to sort this out. HP Support can be reached by clicking on the following link.
https://support.hp.com/us-en/poly
I hope this helps! Keep me posted for further assistance. If you find the information provided useful or solves your problems, help other users find the solution more easily by giving Kudos/Thumbs Up and marking my post as an Accepted Solution.
Regards,
Salman
10-26-2024 01:38 AM
Hello @William4949 ,
Welcome to the HP community.
Unfortunately, your post does not contain the currently used Software version for the HP Poly product or the Partner application version you use, such as Microsoft Teams, Zoom Rooms, Poly SIP/H.323 mode, etc.
This is important especially in the future when someone finds this post in days, months, or years to come.
Please do not simply edit the original post but reply with the versions.
In the FAQ or the Read 1st section, we remind users why this is important.
CVE-2019-20372 documents an issue around NGINX being fronted by a load balancer which is not an applicable use case for TC8 or TC10.
I would suggest you wait for the next PolyOS 4.3.3 release, re-run any security testing, and if you still see an issue reach out to our support team as already suggested by @M_Salman
Best regards
Steffen Baier
Notice: I am an HP Poly employee but all replies within the community are done as a volunteer outside of my day role. This community forum is not an official HP Poly support resource, thus responses from HP Poly employees, partners, and customers alike are best-effort in attempts to share learned knowledge.
If you need immediate and/or official assistance for former Poly\Plantronics\Polycom please open a service ticket through your support channels
For HP products please check HP Support.
Please also ensure you always check the General VoIP , Video Endpoint , UC Platform (Microsoft) , PSTN