Wednesday, August 30, 2017

IBM Security Bulletin: Multiple vulnerabilities may affect IBM® SDK, Java™ Technology Edition

Java SE issues disclosed in the Oracle July 2017 Critical Patch Update, plus one additional vulnerability.

CVE(s): CVE-2017-10111, CVE-2017-10110, CVE-2017-10107, CVE-2017-10101, CVE-2017-10096, CVE-2017-10090, CVE-2017-10089, CVE-2017-10087, CVE-2017-10102, CVE-2017-10116, CVE-2017-10074, CVE-2017-10078, CVE-2017-10115, CVE-2017-10067, CVE-2017-10125, CVE-2017-10243, CVE-2017-10109, CVE-2017-10108, CVE-2017-10053, CVE-2017-10105, CVE-2017-10081, CVE-2017-1376

Affected product(s) and affected version(s):

IBM SDK, Java Technology Edition, Version 6 Service Refresh 16 Fix Pack 45 and earlier releases
IBM SDK, Java Technology Edition, Version 6R1 Service Refresh 8 Fix Pack 45 and earlier releases
IBM SDK, Java Technology Edition, Version 7 Service Refresh 10 Fix Pack 5 and earlier releases
IBM SDK, Java Technology Edition, Version 7R1 Service Refresh 4 Fix Pack 5 and earlier releases
IBM SDK, Java Technology Edition, Version 8 Service Refresh 4 Fix Pack 7 and earlier releases

For detailed information on which CVEs affect which releases, please refer to the IBM SDK, Java Technology Edition Security Vulnerabilities page.

NOTE 1: CVE-2017-10111, CVE-2017-10074 and CVE-2017-10081 affect IBM SDK, Java Technology Edition on Solaris, HP-UX and Mac OS only.
NOTE 2: CVE-2017-1376 does not affect IBM SDK, Java Technology Edition on Solaris, HP-UX and Mac OS.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2x52EwH
X-Force Database: http://ift.tt/2vENxqi
X-Force Database: http://ift.tt/2x4P64r
X-Force Database: http://ift.tt/2vECPQw
X-Force Database: http://ift.tt/2x4P6Bt
X-Force Database: http://ift.tt/2vEtYOD
X-Force Database: http://ift.tt/2x52Goj
X-Force Database: http://ift.tt/2vEW7Fc
X-Force Database: http://ift.tt/2x52GEP
X-Force Database: http://ift.tt/2veVuCa
X-Force Database: http://ift.tt/2wyaY8O
X-Force Database: http://ift.tt/2vEUffF
X-Force Database: http://ift.tt/2wEm9Mt
X-Force Database: http://ift.tt/2xsr7ZC
X-Force Database: http://ift.tt/2x4YZ1U
X-Force Database: http://ift.tt/2vfEyLU
X-Force Database: http://ift.tt/2wECTmy
X-Force Database: http://ift.tt/2vEvu3j
X-Force Database: http://ift.tt/2vff6pW
X-Force Database: http://ift.tt/2wEhie8
X-Force Database: http://ift.tt/2x588Yf
X-Force Database: http://ift.tt/2vEjNtH
X-Force Database: http://ift.tt/2vfk1Hi

The post IBM Security Bulletin: Multiple vulnerabilities may affect IBM® SDK, Java™ Technology Edition appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2vEYF6k

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.