Tuesday, October 4, 2016

IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM Sterling Connect:Direct Browser User Interface (CVE-2016-3426, CVE-2016-3485)

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition, Version 7.0 that is used by IBM Sterling Connect:Direct Browser User Interface. These issues were disclosed as part of the IBM Java Runtime updates in April 2016 and July 2016.

CVE(s): CVE-2016-3426, CVE-2016-3485

Affected product(s) and affected version(s):

IBM Sterling Connect:Direct Browser User Interface 1.5.0 through 1.5.0.2 iFix 17
IBM Sterling Connect:Direct Browser User Interface 1.4.0 through 1.4.11.0 iFix 5

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2dFDBmI
X-Force Database: http://ift.tt/1N2N2xe
X-Force Database: http://ift.tt/2b7G65u



from IBM Product Security Incident Response Team http://ift.tt/2d0edup

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.