Forum Discussion
MS needs to update OpenSSL within On Premise Data Gateway
We’re seeing the same issue flagged by Microsoft Defender, which shows an attack path due to a vulnerability. The root cause is the outdated OpenSSL version in the Simba Spark ODBC connector, last updated 6 months ago.
Since the on-premises data gateway uses this connector, it also inherits the vulnerability. We’re waiting for an update to fix this issue, and we believe Microsoft should address this risk promptly.
Hi david147brown ,
I am sorry to reply you after so long, at present Microsoft official has noticed this problem, about the Open ssl vulnerability, the solution given at present is that it will be fixed in the future desktop version, if the fixed version is released, I will notify you the latest desktop version number at the first time, I hope this can be helpful for your query!
- pmemar1 year agoRegular Visitor
Hi Anonymous ,
Unfortunately, the new update still suffers from the same vulnerability. We are looking forward to receiving an updated patch from Microsoft.