There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 8 used by the Elastic Storage Server and the GPFS Storage Server. These issues were disclosed as part of the IBM Java SDK updates in Jan 2017.
CVE(s): CVE-2016-5547, CVE-2016-5548, CVE-2016-5549, CVE-2016-2183
Affected product(s) and affected version(s):
The Elastic Storage Server 5.0
The Elastic Storage Server 4.5.0 – 4.5.1
The Elastic Storage Server 4.0.0 – 4.0.6
The Elastic Storage Server 3.5.0 – 3.5.6
The Elastic Storage Server 3.0.0 – 3.0.5
The Elastic Storage Server 2.5.0 – 2.5.5
The GPFS Storage Server 2.0.0 – 2.0.7
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2ovm3PM
X-Force Database: http://ift.tt/2msBF5I
X-Force Database: http://ift.tt/2lAx183
X-Force Database: http://ift.tt/2msD77U
X-Force Database: http://ift.tt/2dR3VyC
The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM Spectrum Scale packaged the Elastic Storage Server and the GPFS Storage Server appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team http://ift.tt/2oiJ8Gf
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.