Do not input private or sensitive data. View Qlik Privacy & Cookie Policy.
Skip to main content

Announcements
Congratulations to the new Qlik Luminary and Partner Ambassador class! Meet them here
cancel
Showing results for 
Search instead for 
Did you mean: 
Irshadubs22
Contributor II
Contributor II

QlikSense Vulnerability Description

Hi team,

 

We got the Vulnerability description below on Qlik sense server.

Path : C:\Program Files\Common Files\Qlik\Custom Data\QvOdbcConnectorPackage\gbq\lib\LibCurl64.DllA\libcurl.dll
Installed version : 7.84.0.0
Fixed version : 8.21.0

Could you please suggest whether this should done by window team or do we need to upgrade anything related to Qlik.

 

Thanks & Regards,

Irshad Ahmad

Labels (1)
3 Replies
JacovCohenQ
Partner - Creator
Partner - Creator

Which Qlik Sense version is installed?

 

nehal062karkera
Contributor
Contributor

Hello, Ishan ahemad

Previously addressed libcurl vulnerabilities by updating the bundled libraries in newer connector releases, which strongly supports treating this as a component vulnerability rather than a Windows-team DLL update. 

The Windows team can assist with OS-level remediation, but they should not independently replace this DLL.

Irshadubs22
Contributor II
Contributor II
Author

Hi @JacovCohenQ ,

 

Thank you for your response.

 

We are using February 2024 patch 1.

Thanks & Regards,

Irshad Ahmad