Wednesday, May 30, 2018

IBM Security Bulletin: IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise are affected by a vulnerability in IBM HTTP Server (CVE-2017-12618)

IBM HTTP Server that is shipped with IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise is affected by a Apache APR vulnerability. IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise have addressed this vulnerability.

CVE(s): CVE-2017-12618

Affected product(s) and affected version(s):

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=swg2C1000383
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/134048

The post IBM Security Bulletin: IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise are affected by a vulnerability in IBM HTTP Server (CVE-2017-12618) appeared first on IBM PSIRT Blog.

Principal Product and Version(s) Affected Supporting Product and Version
IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise Edition V2.5, V2.5.0.1, V2.5.0.2, V2.5.0.3, V2.5.0.4, 2.5.0.5, 2.5.0.6 IBM HTTP Server 8.5.5
IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise Edition V2.4, V2.4.0.1, V2.4.0.2, V2.4.0.3, 2.4.0.4, 2.4.0.5 IBM HTTP Server 8.5
IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise Edition V2.3, V2.3.0.1 IBM HTTP Server 8.5


from IBM Product Security Incident Response Team https://ift.tt/2IZxv0E

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.