Navigation and service

BSI Warnings (Pursuant to Sections 7 and 7a of the BSIG)

A vulnerability in an IT product poses a serious threat to cyber security. In accordance with Sections 7 and 7a of the Federal Office for Information Security Act (BSIG), the BSI is thus authorised to issue the following warnings for the general public or affected groups of users:

  • Warnings concerning vulnerabilities in information technology products and services
  • Warnings about malware
  • Warnings related to the loss of data or unauthorised access to data

The BSI issues warnings in accordance with section 7 of the BSIG in cases where a manufacturer has taken inadequate action (or none at all) to counter the threat posed by a vulnerability that has come to light.

The following list covers the most recent warnings from the last six months.

(available in german language only)

Archiving:

If a manufacturer has taken suitable action itself or publicly recommended an appropriate course of action, the corresponding BSI warning pursuant to Section 7 of the BSIG will be archived along with a note on the manufacturer's response after one month. If the manufacturer takes no appropriate action, the BSI warning will be archived six months after its initial publication or after the last update made to the warning. If an archived BSI warning is found to be erroneous or to contain information that is inapplicable, it will also be updated accordingly.

Archiving does not automatically nullify a warning: If an individual user fails to implement the actions recommended by the manufacturer, this user will remain exposed to the threat in question.

Accordingly, the BSI provides information about the findings of tests conducted on information technology products. It also issues warnings about vulnerabilities in information technology products and services, as well as on malware, data loss, and unauthorised data access.

FAQ about BSI warnings in accordance with Section 7 of the BSIG