Quantcast
Channel: SCN: Message List
Viewing all articles
Browse latest Browse all 8332

Re: Two Buffer Overflow vulnerability status

$
0
0

Hi Manini,

 

Crystal Reports for Visual Studio SP 9 had serious WEB Application issues so you are better off moving to SP 13.

Unfortunately I can't say for sure if that fix made it into SP 9. I doubt it because those patches were released after CR for VS SP 9 so likely CR for VS may have the issue. But it depends on a lot of things

 

The KBA refers to BOE which is not the same code stream as CR for VS, they are not linked together. So I doubt it was an issue but nothing I have seen in the KBA links indicated that specific KBA fix was checked into CR for VS code stream.

 

And BI-RA-CR is the standalone CR Designer, it is not the same code stream and this product.

The info does say exactly what was fixed so I can't say for sure.

If you really want to know purchase a single case or log into SMP and create and Incident and we can escalate it to DEV to confirm or not.

 

If it was I would have seen BI-DEV-NET listed in the affected/patched Components and it is not. Therefore I suspect it should not have affected this product.

 

Don


Viewing all articles
Browse latest Browse all 8332

Trending Articles