Recently updated to 220.127.116.11 on all hosts, but not certain if the RSA Security Analytics 10.6.6.1 was included in that update or if it is a separate update.
Based on advisory that went out, anything later than 18.104.22.168 for the v11 branch is not vulnerable. With that said, this should imply that 11.3 is also not vulnerable and no further action is needed.
I hope this helps.
Thank you for your reply. That does seem to provide more insight.
My only other embedded question was how to check the current version of the RSA Security Analytics. The link implies that there are two versions, so where to find these details?
RSA Netwitness Platform version 22.214.171.124 (verified)RSA Security Analytics version x.x.x.x ??? (unverified)
Its actually just one product, but with two different names depending on the version #. The newer versions are all named NetWitness Platform, while the older versions are named Security Analytics (…and the really, really old versions are also called NetWitness…).
Retrieving data ...