Monday, January 23, 2017

IBM Security Bulletin: HTTP Response Splitting in WebSphere Application Server affects IBM Virtualization Engine TS7700 (CVE-2016-0359)

There is a potential HTTP response splitting vulnerability in IBM WebSphere Application Server as used by the IBM Virtualization Engine TS7700.

CVE(s): CVE-2016-0359

Affected product(s) and affected version(s):

All versions of microcode for the IBM Virtualization Engine TS7700 (3957-V07, 3957-VEB, 3957-VEC) prior to and including the following are affected:

Microcode versions 2.1 and prior for the 3957-V06 and 3957-VEA are not affected.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2kjJGwN
X-Force Database: http://ift.tt/28YBUiZ

Machine Type Model Version
3957 V07 8.33.1.13
3957 VEB 8.33.1.13
3957 VEC 8.40.0.71


from IBM Product Security Incident Response Team http://ift.tt/2kjJEoF

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.