Friday, October 27, 2017

IBM Security Bulletin: Multiple security vulnerabilities affect Liberty for Java for IBM Bluemix (CVE-2017-1583, CVE-2011-4343)

There is a potential infomation disclosure vulnerability that affects the Java Server Faces (JSF) component used by WebSphere Application Server. There is a potential infomation disclosure vulnerability that affects the MyFaces component used by JSF in WebSphere Application Server.

CVE(s): CVE-2017-1583, CVE-2011-4343

Affected product(s) and affected version(s):

This vulnerability affects all versions of Liberty for Java in IBM Bluemix up to and including v3.13.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2ioSly6
X-Force Database: http://ift.tt/2gVtBtY
X-Force Database: http://ift.tt/2ioSn9c

The post IBM Security Bulletin: Multiple security vulnerabilities affect Liberty for Java for IBM Bluemix (CVE-2017-1583, CVE-2011-4343) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2gVtz5k

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.