Problem Note 62003: A security vulnerability currently exists in SAS® Visual Data Mining and Machine Learning
Severity: High
Description: A security vulnerability in SAS® Visual Data Mining and Machine Learning exists in SAS® Viya® 3.2 and SAS Viya 3.3.
Potential Impact: An attacker with knowledge about this vulnerability and network access to the SAS Viya servers can access restricted data.
Click the Hot Fix tab in this note to access the hot fix for this issue.
After You Install the Hot Fix
It is important that you now verify that the update is installed. To do so, run the following rpm command:
rpm -q sas-crscmptrvsn
To complete this verification process, make sure that the package version shown in the rpm output either matches or is newer than the following:
Version info for SAS Viya 3.2: sas-crscmptrvsn-01.04.01-20180319.110137157985.x86_64
Version info for SAS Viya 3.3: sas-crscmptrvsn-01.10.01-20180319.112251154156.x86_64
Additional Assistance
If you need additional assistance, contact SAS Technical Support.
Operating System and Release Information
SAS System | SAS Visual Data Mining and Machine Learning | Linux for x64 | 8.1 | 8.1 | Viya | Viya |
*
For software releases that are not yet generally available, the Fixed
Release is the software release in which the problem is planned to be
fixed.
Type: | Problem Note |
Priority: | alert |
Date Modified: | 2018-04-03 09:19:30 |
Date Created: | 2018-03-19 16:06:33 |