Aug 01, 2019
02:31 AM
Hi @blakegreen did you get any resolution for this issue? We are having vulnerabilities issue with InstallShield 2016. The only solution we have got so far from Flexera Support is to upgrade to InstallShield 2019, we do not want to spend few thousand dollars to get resolution to this vulnerabilty issue.
... View more
Jul 31, 2019
12:22 AM
Hi @shunt thanks for the quick reply. Along with the vulnerabilities listed above, our cyber-security software also reported some historical vulnerabilities which mentions the versions of Zlib 1.2 and later and 1.2.x in InstallShield 2016. Here's the list Vulnerabilities (4)Vulnerability Date CVSS v2 CVSS v3 Type CVE-2016-9841 2017/05/22 7.5 9.8 Exact match CVE-2016-9843 2017/05/22 7.5 9.8 Exact match CVE-2016-9840 2017/05/22 6.8 8.8 Exact match CVE-2016-9842 2017/05/22 6.8 8.8 Exact match Historical vulnerabilities (5)Vulnerability Date CVSS v2 CVSS v3 Type CVE-2005-2096 2005/07/05 7.5 0.0 Historical CVE-2005-1849 2005/07/25 5.0 0.0 Historical CVE-2004-0797 2004/10/19 2.1 0.0 Historical CVE-2003-0107 2003/03/06 7.5 0.0 Historical CVE-2002-0059 2002/03/14 7.5 0.0 Historical As I mentioned before we do not have any immediate plan to upgrade to InstallShield 2019. Is there a way to resolve this in our existing InstallShield version (2016). Thanks, Vishal
... View more
Jul 30, 2019
04:17 AM
Thanks @Varaprasad for the quick reply. I just confirmed with my team and we also have InstallShield 2016, and I can see from the link you shared that InstallShield 2016 has not reached the end-of-lifecycle. Is there any solution available to resolve the issue that we are facing related to Zlib 1.2.3 vulnerability ? Can we upgrade the Zlib to a newer version in InstallShield 2016?
... View more
Jul 30, 2019
03:31 AM
We are still using InstallShield 2014 and have no immdietate plan to upgrade to 2019 version. Is there any way to resolve this issue in 2014 version of InstallShield? Can we update zlib 1.2.3 to latest version in IntsallShield 2014?
... View more
Jul 30, 2019
03:16 AM
@Yu_Wang Did you found the solution to this issue?
... View more
Jul 30, 2019
03:16 AM
Are there any resolution to issue, we are also facing the same issue with InstallShield 2014 and our CyberSecurity team have found the vulnerability with Zlib 1.2.3 on the installer that we created using Installer 2014
... View more
Latest posts by bhattvishal
Subject | Views | Posted |
---|---|---|
1919 | Aug 01, 2019 02:31 AM | |
3887 | Jul 31, 2019 12:22 AM | |
3914 | Jul 30, 2019 04:17 AM | |
3921 | Jul 30, 2019 03:31 AM | |
3929 | Jul 30, 2019 03:16 AM | |
1938 | Jul 30, 2019 03:16 AM |
Activity Feed
- Posted Re: InstallAnyWhere 2018: Security Issue with zlib 1.0.4 on InstallAnywhere Forum. Aug 01, 2019 02:31 AM
- Posted Re: CVEs found in the built .exe file related to ZLIB 1.2.3 on InstallShield Forum. Jul 31, 2019 12:22 AM
- Posted Re: CVEs found in the built .exe file related to ZLIB 1.2.3 on InstallShield Forum. Jul 30, 2019 04:17 AM
- Posted Re: CVEs found in the built .exe file related to ZLIB 1.2.3 on InstallShield Forum. Jul 30, 2019 03:31 AM
- Posted Re: CVEs found in the built .exe file related to ZLIB 1.2.3 on InstallShield Forum. Jul 30, 2019 03:16 AM
- Posted Re: InstallAnyWhere 2018: Security Issue with zlib 1.0.4 on InstallAnywhere Forum. Jul 30, 2019 03:16 AM
- Kudoed CVEs found in the built .exe file related to ZLIB 1.2.3 for Yu_Wang. Jul 30, 2019 03:16 AM