Monday, December 12, 2016

IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK and IBM Java Runtime affect IBM Tivoli Access Manager for e-business and IBM Security Access Manager for Web version 7 software (CVE-2016-3550, CVE-2016-3485)

There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 6.0.16.26 and IBM® Runtime Environment Java™ Version 6.0.16.26 that is used by IBM Tivoli Access Manager for e-business and IBM Security Access Manager for Web version 7 software. These issues were disclosed as part of the IBM Java SDK updates in July 2016.

CVE(s): CVE-2016-3550, CVE-2016-3485

Affected product(s) and affected version(s):

IBM Tivoli Access Manager for e-business version 6.0

IBM Tivoli Access Manager for e-business version 6.1

IBM Tivoli Access Manager for e-business version 6.1.1

IBM Security Access Manager for Web version 7.0 software release

NOTE: CVE-2016-3550 affects IBM SDK, Java Technology Edition on Solaris and HP-UX only.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2hEQjEn
X-Force Database: http://ift.tt/2aGc4lp
X-Force Database: http://ift.tt/2b7G65u



from IBM Product Security Incident Response Team http://ift.tt/2gEa0yv

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.