There are multiple vulnerabilities in IBM® Runtime Environment Java™ used by IBM Spectrum Protect (formerly Tivoli Storage Manager) Operations Center and IBM Spectrum Protect (formerly Tivoli Storage Manager) Client Management Service. These issues were disclosed as part of the IBM Java SDK updates in October 2016 and January 2017.
CVE(s): CVE-2016-5597, CVE-2017-3289, CVE-2017-3272, CVE-2017-3241, CVE-2017-3260, CVE-2016-5546, CVE-2017-3253, CVE-2016-5548, CVE-2016-5549, CVE-2017-3252, CVE-2016-5547, CVE-2016-5552, CVE-2017-3261, CVE-2017-3231, CVE-2017-3259, CVE-2016-2183
Affected product(s) and affected version(s):
The following versions of IBM Spectrum Protect (formerly Tivoli Storage Manager) Operations Center are affected:
- 8.1.0.000 through 8.1.1.000
- 7.1.0.000 through 7.1.7.100
- 6.4.0.000 through 6.4.2.500
The following versions of IBM Spectrum Protect (formerly Tivoli Storage Manager) Client Management Service are affected:
- 8.1.0.000 through 8.1.1.000
- 7.1.0.000 through 7.1.7.000
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2oVFlOS
X-Force Database: http://ift.tt/2e5pD2s
X-Force Database: http://ift.tt/2lA6pnI
X-Force Database: http://ift.tt/2msIV19
X-Force Database: http://ift.tt/2lAcror
X-Force Database: http://ift.tt/2msG8VN
X-Force Database: http://ift.tt/2lA4akm
X-Force Database: http://ift.tt/2msWpdg
X-Force Database: http://ift.tt/2lAx183
X-Force Database: http://ift.tt/2msD77U
X-Force Database: http://ift.tt/2lAk4Lp
X-Force Database: http://ift.tt/2msBF5I
X-Force Database: http://ift.tt/2lAiqcB
X-Force Database: http://ift.tt/2msOwVj
X-Force Database: http://ift.tt/2lAc9xE
X-Force Database: http://ift.tt/2msIPqs
X-Force Database: http://ift.tt/2dR3VyC
The post IBM Security Bulletin: Multiple vulnerabilites in IBM Java Runtime affect IBM Spectrum Protect (Tivoli Storage Manager) Operations Center and IBM Spectrum Protect (Tivoli Storage Manager) Client Management Service appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team http://ift.tt/2oJ2S9S
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.