Zoom's New Software Lifecycle Policy begins Nov. 5, 2022
Karen Montefiori
October 10, 2022
Starting Nov. 5, 2022, Zoom will enforce it's new Lifecycle Policy. Under the policy, users who run an end-of-life version of any Zoom product or service, including Zoom Client, will not be able to join meetings via the Zoom Client. Users have two options:
Update to the current version of the Zoom Client
Join the meeting from a web browser instead of the Zoom Client
To download the current version of Zoom Client, sign into the Zoom Client, click your initials in the upper right corner, and click Check for Updates.
SAS Remote Code Execution Vulnerability (CVE-2021-44228)
CVE-2021-44228 is a remote code execution vulnerability in Apache Log4j.
SAS 9.4 is vulnerable to CVE-2021-44228.
VUMC IT applied the necessary Security Update to address the Log4j vulnerability on the server.
End users access the SAS server through SAS Enterprise Guide, the PC interface, and through SAS Studio, the web interface. Enterprise Guide is not Java based and is not vulnerable to CVE-2021-44228.
Apache Log4j CVE-2021-44228 vulnerability in IBM SPSS Statistics
December 22, 2021
Posted in
IBM released Interim Fixes to address the Apache Log4j vulnerability in SPSS Statistics Premium versions 25, 26, 27 and 28.
See IBM's support article for more information.
Contact software.store@vumc.org if you have questions.
Tableau Security Update 5
Tableau Software, LLC has released a product update for all impacted versions of Tableau products to address the Apache Log4j2 security vulnerabilities in CVE-2021-44228 and CVE-2021-45046.