SUPPORT / SAMPLES & SAS NOTES
 

Support

Problem Note 65072: Platform Web Services contains a security vulnerability in Apache Commons Beanutils 1.9.2

DetailsDownloadsAboutRate It

Severity: High

Description: Platform Web Services 9.1.3.2 has been found to include a vulnerability in Apache Commons Beanutils 1.9.2, per the vulnerability that is described in CVE-2019-10086.

Potential Impact: An attacker can execute malicious code on Java objects.

Click the Downloads tab in this note to access a patch that circumvents this problem.



Operating System and Release Information

Product FamilyProductSystemProduct ReleaseSAS Release
ReportedFixed*ReportedFixed*
SAS SystemPlatform Web Services for SASMicrosoft® Windows® for x641.69.4 TS1M6
64-bit Enabled AIX1.69.4 TS1M6
64-bit Enabled Solaris1.69.4 TS1M6
HP-UX IPF1.69.4 TS1M6
Linux for x641.69.4 TS1M6
Solaris for x641.69.4 TS1M6
* For software releases that are not yet generally available, the Fixed Release is the software release in which the problem is planned to be fixed.