ExpeditionTech has begun the multi-year migration of VUMC applications and their related components from directories shared with Vanderbilt University (VU) to the VUMC directory. This includes servers, databases, security groups, resource accounts and file shares, and impacts more than 700 applications.
As previously announced, Microsoft is no longer supporting their outdated Windows 7 operating system. On July 1, 2022, all workstations still using Windows 7 will be blocked from the network.
These workstations have already been cut off from accessing the virtual private network (VPN) as they are no longer supported by our VPN solution.
Get your new Windows 10 device
Microsoft is no longer supporting their outdated Windows 7 operating system. To ensure the security of our workstations and in support of the broader ExpeditionTech Program, VUMC IT and Vanderbilt Enterprise Cybersecurity are migrating all workstations to the Windows 10 operating system. As a result, all workstations running Windows 7 are impacted.
Effective immediately, Windows 7 workstations can no longer connect to the VPN
To support the ExpeditionTech program and our enterprise migration to more modern and secure technology, the ExpeditionTech team will convert existing VUMC IT-managed printers to PrinterLogic, for both clinical and administrative systems in the coming weeks.
The rollout impacts all VUMC IT-managed printers, as well as both shared and stand-alone workstations with current mapping to a printer.
The move to PrinterLogic will:
CVE-2021-44228 is a remote code execution vulnerability in Apache Log4j.
SAS 9.4 is vulnerable to CVE-2021-44228.
VUMC IT applied the necessary Security Update to address the Log4j vulnerability on the server.
End users access the SAS server through SAS Enterprise Guide, the PC interface, and through SAS Studio, the web interface. Enterprise Guide is not Java based and is not vulnerable to CVE-2021-44228.
IBM released Interim Fixes to address the Apache Log4j vulnerability in SPSS Statistics Premium versions 25, 26, 27 and 28.
See IBM's support article for more information.
Contact software.store@vumc.org if you have questions.
Tableau Software, LLC has released a product update for all impacted versions of Tableau products to address the Apache Log4j2 security vulnerabilities in CVE-2021-44228 and CVE-2021-45046.