Thursday, November 9, 2017

IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM WebSphere Application Server shipped with IBM Cloud Orchestrator and Cloud Orchestrator Enterprise

There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition and IBM® Runtime Environment Java™ Version used by IBM WebSphere Application Server. IBM Cloud Orchestrator and Cloud Orchestrator Enterprise has addressed the applicable CVEs. These issues were also addressed by IBM WebSphere Application Server shipped with IBM Cloud Orchestrator and Cloud Orchestrator Enterprise.

CVE(s): CVE-2017-3514, CVE-2017-3512, CVE-2017-3511, CVE-2017-3526, CVE-2017-3509, CVE-2017-3544, CVE-2017-3533, CVE-2017-3539, CVE-2017-1289, CVE-2016-9840, CVE-2016-9841, CVE-2016-9842, CVE-2016-9843, CVE-2017-1289, CVE-2017-3511

Affected product(s) and affected version(s):

Principal Product and Version(s)
Affected Supporting Product and Version

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2AwU2yi
X-Force Database: http://ift.tt/2pv78pP
X-Force Database: http://ift.tt/2pYs23d
X-Force Database: http://ift.tt/2pv7JaY
X-Force Database: http://ift.tt/2pY6aou
X-Force Database: http://ift.tt/2pvrrn2
X-Force Database: http://ift.tt/2pYfysm
X-Force Database: http://ift.tt/2pv79tT
X-Force Database: http://ift.tt/2pYkfm0
X-Force Database: http://ift.tt/2pvwR1f
X-Force Database: http://ift.tt/2lLwOQm
X-Force Database: http://ift.tt/2mlzP6B
X-Force Database: http://ift.tt/2lLuetu
X-Force Database: http://ift.tt/2mlCjlv
X-Force Database: http://ift.tt/2pvwR1f
X-Force Database: http://ift.tt/2pv7JaY

The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM WebSphere Application Server shipped with IBM Cloud Orchestrator and Cloud Orchestrator Enterprise appeared first on IBM PSIRT Blog.

IBM Cloud Orchestrator V2.5.0.3 and V2.5.0.4
  • WebSphere Application Server V8.5.5.11
IBM Cloud Orchestrator V2.4.0.3 and V2.4.0.4
  • WebSphere Application Server V8.5.5.12
IBM Cloud Orchestrator Enterprise V2.5.0.3 and V2.5.0.4
  • WebSphere Application Server V8.5.5 through V8.5.5.11
IBM Cloud Orchestrator Enterprise V2.4.0.3 and V2.4.0.4
  • WebSphere Application Server V8.5.0.1 through V8.5.5.12


from IBM Product Security Incident Response Team http://ift.tt/2AwvchO

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.