<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Windows SMB Denial of Service Vulnerability in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1927074#M30352</link>
    <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/144779"&gt;@Balledaa&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;In QlikSense SMB3 is tested and can be used as it is mentioned&amp;nbsp;&lt;A href="https://help.qlik.com/en-US/sense-admin/February2021/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoW/Deploy_QSEoW/Persistence.htm" target="_blank"&gt;Persistence ‒ Qlik Sense for administrators.&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;SMB1 is a quite old protocol, do you have a test machine were your file server admin can disable SM, so you could check is not impacting your QlikView environment.&lt;/P&gt;
&lt;P&gt;As per the information on&amp;nbsp;&lt;A href="https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2017-0280#:~:text=A%20denial%20of%20service%20vulnerability%20exists%20in%20the,to%20stop%20responding%20until%20it%20is%20manually%20restarted." target="_blank"&gt;CVE-2017-0280 - Security Update Guide - Microsoft - Windows SMB Denial of Service Vulnerability&lt;/A&gt;&amp;nbsp;seems the topic is more related to the server itself and Microsoft itself delivered a fix back in 2017&amp;nbsp;&lt;A href="https://support.microsoft.com/en-gb/topic/may-9-2017-kb4019472-os-build-14393-1198-c102f1c8-bf63-31a8-fe68-d00cb31c6b4b" target="_blank"&gt;May 9, 2017—KB4019472 (OS Build 14393.1198) (microsoft.com)&lt;/A&gt;&amp;nbsp;so as long as your OS is updated should be fine.&lt;/P&gt;
&lt;P&gt;I hope this helps.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;</description>
    <pubDate>Thu, 05 May 2022 19:26:52 GMT</pubDate>
    <dc:creator>Albert_Candelario</dc:creator>
    <dc:date>2022-05-05T19:26:52Z</dc:date>
    <item>
      <title>Windows SMB Denial of Service Vulnerability</title>
      <link>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1926624#M30349</link>
      <description>&lt;P&gt;Our Administrator team has Discovered the use of Microsoft Server Message Block 1.0 (SMBv1) protocol on the server which is against security baseline and is deem as &amp;nbsp;non-compliance and poses a high risk of vulnerability. The vulnerability can allows denial of service when an attacker sends specially crafted requests to the server, aka "Windows SMB Denial of Service Vulnerability".&lt;/P&gt;
&lt;P&gt;Their recommendation is to disable the protocol on the server to remediate the issue.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can anyone please help me to know more details about the impact this vulnerability can cause to QlikView systems and what actions should be taken.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jan 2025 16:38:32 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1926624#M30349</guid>
      <dc:creator>Balledaa</dc:creator>
      <dc:date>2025-01-29T16:38:32Z</dc:date>
    </item>
    <item>
      <title>Re: Windows SMB Denial of Service Vulnerability</title>
      <link>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1926625#M30350</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/144779"&gt;@Balledaa&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What product are you using? And what version.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 05 May 2022 07:00:36 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1926625#M30350</guid>
      <dc:creator>Maria_Halley</dc:creator>
      <dc:date>2022-05-05T07:00:36Z</dc:date>
    </item>
    <item>
      <title>Re: Windows SMB Denial of Service Vulnerability</title>
      <link>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1926690#M30351</link>
      <description>&lt;P&gt;Hello Maria,&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Balledaa_0-1651737835127.png" style="width: 999px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/78728i33BCDFDE2ED7827E/image-size/large?v=v2&amp;amp;px=999" role="button" title="Balledaa_0-1651737835127.png" alt="Balledaa_0-1651737835127.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;We are using the above two products.&lt;/P&gt;</description>
      <pubDate>Thu, 05 May 2022 08:04:59 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1926690#M30351</guid>
      <dc:creator>Balledaa</dc:creator>
      <dc:date>2022-05-05T08:04:59Z</dc:date>
    </item>
    <item>
      <title>Re: Windows SMB Denial of Service Vulnerability</title>
      <link>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1927074#M30352</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/144779"&gt;@Balledaa&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;In QlikSense SMB3 is tested and can be used as it is mentioned&amp;nbsp;&lt;A href="https://help.qlik.com/en-US/sense-admin/February2021/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/QSEoW/Deploy_QSEoW/Persistence.htm" target="_blank"&gt;Persistence ‒ Qlik Sense for administrators.&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;SMB1 is a quite old protocol, do you have a test machine were your file server admin can disable SM, so you could check is not impacting your QlikView environment.&lt;/P&gt;
&lt;P&gt;As per the information on&amp;nbsp;&lt;A href="https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2017-0280#:~:text=A%20denial%20of%20service%20vulnerability%20exists%20in%20the,to%20stop%20responding%20until%20it%20is%20manually%20restarted." target="_blank"&gt;CVE-2017-0280 - Security Update Guide - Microsoft - Windows SMB Denial of Service Vulnerability&lt;/A&gt;&amp;nbsp;seems the topic is more related to the server itself and Microsoft itself delivered a fix back in 2017&amp;nbsp;&lt;A href="https://support.microsoft.com/en-gb/topic/may-9-2017-kb4019472-os-build-14393-1198-c102f1c8-bf63-31a8-fe68-d00cb31c6b4b" target="_blank"&gt;May 9, 2017—KB4019472 (OS Build 14393.1198) (microsoft.com)&lt;/A&gt;&amp;nbsp;so as long as your OS is updated should be fine.&lt;/P&gt;
&lt;P&gt;I hope this helps.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;</description>
      <pubDate>Thu, 05 May 2022 19:26:52 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Windows-SMB-Denial-of-Service-Vulnerability/m-p/1927074#M30352</guid>
      <dc:creator>Albert_Candelario</dc:creator>
      <dc:date>2022-05-05T19:26:52Z</dc:date>
    </item>
  </channel>
</rss>

