HPE security advisory (AV26-951)
Canada's Cyber Centre warns of HPE ALE and Telco Orchestrator flaws, including a remote denial of service.
The Canadian Centre for Cyber Security published advisory AV26-951 on September 23, 2026, relaying Hewlett Packard Enterprise security bulletins. HPE Networking Analytics and Location Engine versions through 5.0.0.0 are affected by multiple vulnerabilities (HPESBNW05137). HPE Telco Service Orchestrator versions through 5.6.0 are affected by a remote denial-of-service issue (HPESBNW05151). Administrators are urged to review the HPE bulletins and apply updates when they become available.
- ALE through 5.0.0.0 has multiple vulnerabilities (HPESBNW05137).
- Telco Service Orchestrator through 5.6.0 has a remote DoS.
- Bulletin IDs are HPESBNW05137 and HPESBNW05151; no CVEs listed.
- Cyber Centre urges administrators to apply updates when available.
Full article94 words · extracted from cyber.gc.ca · click to collapse
Serial number: AV26-951
Date: September 23, 2026
As of September 22, 2026, Hewlett Packard Enterprise (HPE) is affected by vulnerabilities in the following products:
- Analytics and Location Engine (ALE)
- Prior to or equal to 5.0.0.0
- HPE Telco Service Orchestrator
- Prior to or equal to 5.6.0
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/hpe-security-advisory-av26-951