cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
367
Views
5
Helpful
2
Replies
Brandon Eldridge
Beginner

Python version in SMA AsyncOS v14 build 418?

I'm seeking to address a vulnerability on an SMA appliance which is currently running AsyncOS 13.6.2. I want to upgrade to version 14.0.0 build 418 to see if my vulnerability is resolved.

 

Does anyone know if the newer version of AsyncOS includes Python 3.x? If not, is anyone aware of Cisco planning to address this to resolve vulnerabilities in older versions of Python on AsyncOS?

 

Thank you in advance for any help anyone can provide!

1 ACCEPTED SOLUTION

Accepted Solutions
Ken Stieers
Advocate

Here's blog post detailing Cisco's position.
https://community.cisco.com/t5/security-blogs/python-on-secure-email-vulnerability-concerns-july-2021/ba-p/4433037
Basically, if they aren't using the functionality/you're not exposed, they leave it. Otherwise they're fixing the Python as its open source.
New version of Python coming in Async OS 15.

View solution in original post

2 REPLIES 2
Ken Stieers
Advocate

Here's blog post detailing Cisco's position.
https://community.cisco.com/t5/security-blogs/python-on-secure-email-vulnerability-concerns-july-2021/ba-p/4433037
Basically, if they aren't using the functionality/you're not exposed, they leave it. Otherwise they're fixing the Python as its open source.
New version of Python coming in Async OS 15.

View solution in original post

Fantastic, thank you Ken!