Burp Suite User Forum

Create new post

Can I safely remove /usr/local/burpsuite_enterprise/jres/9.0.4 ?

Ken | Last updated: Oct 25, 2021 05:51PM UTC

Hi, A recent vulnerability assessment scan has flagged a vulnerable version of Java on our Burp Suite Enterprise server. We are running Burp Suite Enterprise Edition Version: 2021.8.1-7685, Java version: 11.0.10 (straight from the about screen). user@host:~$ ls -l /usr/local/burpsuite_enterprise/jres/ total 8 drwxr-sr-x 7 user user 4096 Jun 26 02:00 11.0.10.9.1 drwxr-sr-x 7 user user 4096 Jul 18 2019 9.0.4 I'm pretty confident I can remove /usr/local/burpsuite_enterprise/jres/9.0.4 but seeking confirmation before I do so. Thanks

Hannah, PortSwigger Agent | Last updated: Oct 26, 2021 09:02AM UTC

Hi

As you've proceeded along the upgrade path for Burp Suite Enterprise Edition, some components of your installation will still be using Java 9.

In order to remove this from your installation, you will need to:
  • Wait for any scans to finish running
  • Take a backup of your database
  • Rerun the installer for the latest version of Enterprise

If you use the same database as you were using previously, you shouldn't lose any data.

You can find this here: https://portswigger.net/burp/releases#enterprise

Please let us know if you have any questions.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.