Jump to content
Changes to the Jaspersoft community edition download ×

CVE-2018-5382 Security Finding - Is this still a vulnerability in JS 6.4.2?


kurtis.fleming

Recommended Posts

Link to community article in question: https://community.jaspersoft.com/questions/1100966/security-finding-cve-2018-5382-jasperreports

We are currently seeking approval from our security team for Jaspersoft Studio 6.4.2 to bypass the web gateways and connect direct.  be carried out until we can confirm that the security finding CVE-2018-5382 has been addressed.

  • Do the patch notes of JS 6.4.2 (or previous versions if addressed some time ago) that is intended for deployment contain explicit reference to CVE-2018-5382?
  • What version of org.bouncycastle:bcprov-jdk15on:XX is used with Jaspersoft 6.4.2?

Thanks.

 

Link to comment
Share on other sites

  • Replies 4
  • Created
  • Last Reply

Top Posters In This Topic

Top Posters In This Topic

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×
×
  • Create New...