There are multiple vulnerabilities in IBM® Runtime Environment Java™ Versions 7 and 8 used by IBM WebSphere MQ and the IBM MQ Appliance. These issues were disclosed as part of the IBM Java SDK updates in October 2016.
CVE(s): CVE-2016-5597
Affected product(s) and affected version(s):
IBM MQ 9.0.x Continuous Delivery Release (CDR)
Continuous delivery update 9.0.1 only
IBM WebSphere Appliance 9.0.x Continuous Delivery Release (CDR)
Continuous delivery update 9.0.1 only
IBM WebSphere MQ 8.0
Maintenance levels between 8.0.0.0 and 8.0.0.5
IBM WebSphere Appliance 8.0
Maintenance levels between 8.0.0.0 and 8.0.0.5
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2nzeOqE
X-Force Database: http://ift.tt/2e5pD2s
The post IBM Security Bulletin: A vulnerability in IBM Java Runtime affects IBM WebSphere MQ and IBM MQ Appliance (CVE-2016-5597) appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team http://ift.tt/2nzjI7e
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.