on 2025 Feb 06 8:35 AM
Hi, I'm currently using SAP Anywhere 17.0.10.6089 as the database for our application. SAP JRE located at `C:\Program Files\SQL Anywhere 17\bin64\jre180`. The installed JRE version is 8.0.31.
Did this version of SAP JRE (8.0.31) have any known security vulnerabilities? If so, I would appreciate guidance on how to obtain and apply the necessary updates or patches to mitigate the risks.
Thank you.
Request clarification before answering.
There are no known security vulnerabilities in the JRE that impact SQL Anywhere use. Ee do document some CVEs that scanners may report and identify the SQL Anywhere update which contains a JRE version that has the mitigation of the CVE. Scanners report vulnerabilities in JRE shipped with SQL Anywhere.
We have updated the JRE, as other 3rd party components including SAP components, a number of times in the past years. SQL Anywhere is now shipping with Java version 1.8.0 381.
There are also multiple security notes related to SQL Anywhere (Component BC-SYB-SQA) which do impact the version your are running. I would encourage you to update to a recent release to mitigate those issues.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
52 | |
8 | |
6 | |
6 | |
5 | |
5 | |
4 | |
4 | |
4 | |
4 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.