SUPPORT / SAMPLES & SAS NOTES
 

Support

Problem Note 62182: Platform Web Services for SAS® contains FasterXML jackson-databind files with known vulnerabilities

DetailsDownloadsAboutRate It

Severity: Critical

Description: The web application might allow for unauthenticated remote code execution.

Potential Impact: An unauthenticated user could execute malicious code remotely.

Click the Downloads tab in this note to access a patch for this issue.



Operating System and Release Information

Product FamilyProductSystemProduct ReleaseSAS Release
ReportedFixed*ReportedFixed*
SAS SystemPlatform Web Services for SASMicrosoft® Windows® for x641.59.4 TS1M5
64-bit Enabled AIX1.59.4 TS1M5
64-bit Enabled Solaris1.59.4 TS1M5
HP-UX IPF1.59.4 TS1M5
Linux for x641.59.4 TS1M5
Solaris for x641.59.4 TS1M5
* For software releases that are not yet generally available, the Fixed Release is the software release in which the problem is planned to be fixed.