Bring your best ideas to the AI Use Case Contest! Enter to win 40 hours of expert engineering support and bring your vision to life using the powerful combination of Alteryx + AI. Learn more now, or go straight to the submission form.
Start Free Trial

Alteryx Designer Desktop Discussions

Find answers, ask questions, and share expertise about Alteryx Designer Desktop and Intelligence Suite.

CVE-2022-3358 and CVE-2022-3602

shcooper
5 - Atom

Hello,

 

our users are on Alteryx Designer 2024.1 version 2024.1.1.49. However, Defender is still picking up openssl CVE-2022-3358 vulnerabilities on the machines.  After digging further, these are the paths being reported 

 

c:\program files\alteryx\bin\miniconda3\envs\designerbasetools_venv\lib\site-packages\fiona.libs\libcrypto-3-x64-a01a35133eabbaa7e6e19da1e5f63695.dll

c:\program files\alteryx\bin\miniconda3\envs\designerbasetools_venv\lib\site-packages\fiona.libs\libssl-3-x64-e88ae0d1a643910f0739148d07de784b.dll

 

Any suggestions?

1 REPLY 1
apathetichell
20 - Arcturus

flag this to your rep. expect a patch. downgrade to a prior version of Alteryx which uses a different python version (ie any before 2024.1)

 

or delete the dll files directly and see if anything breaks. I do not see these site-packages on old version of Alteryx like I use.

Labels
Top Solution Authors