There are vulnerabilities in IBM® SDK Java™ Technology Edition, Versions 6 and 7 that are used by Rational Reporting for Development Intelligence (RRDI). The issues were disclosed as part of the IBM Java SDK updates in April 2017 and July 2017.
CVE(s): CVE-2017-3514, CVE-2017-3512, CVE-2017-3511, CVE-2017-3526, CVE-2017-3509, CVE-2017-3544, CVE-2017-3533, CVE-2017-3539, CVE-2017-1289, CVE-2016-9840, CVE-2016-9841, CVE-2016-9842, CVE-2016-9843, CVE-2017-10125, CVE-2017-10067, CVE-2017-10115, CVE-2017-10096, CVE-2017-10101, CVE-2017-10116, CVE-2017-10102, CVE-2017-10087, CVE-2017-1376, CVE-2017-10105, CVE-2017-10053
Affected product(s) and affected version(s):
Principal Product and Version(s) | Affected Supporting Product(s) and Version(s) |
RRDI 2.0, 2.0.1, 2.0.3 and 2.0.4 | Cognos BI 10.1.1 |
RRDI 2.0.5 and 2.0.6 | Cognos BI 10.2.1 |
RRDI 5.0, 5.0.1 and 5.0.2 | Cognos BI 10.2.1 Fix pack 2 Jazz Reporting Service 5.0, 5.0.1 and 5.0.2 |
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2zWQftx
X-Force Database: http://ift.tt/2pv78pP
X-Force Database: http://ift.tt/2pYs23d
X-Force Database: http://ift.tt/2pv7JaY
X-Force Database: http://ift.tt/2pY6aou
X-Force Database: http://ift.tt/2pvrrn2
X-Force Database: http://ift.tt/2pYfysm
X-Force Database: http://ift.tt/2pv79tT
X-Force Database: http://ift.tt/2pYkfm0
X-Force Database: http://ift.tt/2pvwR1f
X-Force Database: http://ift.tt/2lLwOQm
X-Force Database: http://ift.tt/2mlzP6B
X-Force Database: http://ift.tt/2lLuetu
X-Force Database: http://ift.tt/2mlCjlv
X-Force Database: http://ift.tt/2vfEyLU
X-Force Database: http://ift.tt/2x4YZ1U
X-Force Database: http://ift.tt/2xsr7ZC
X-Force Database: http://ift.tt/2x4LWxw
X-Force Database: http://ift.tt/2x4P6Bt
X-Force Database: http://ift.tt/2wyaY8O
X-Force Database: http://ift.tt/2veVuCa
X-Force Database: http://ift.tt/2x52GEP
X-Force Database: http://ift.tt/2vfk1Hi
X-Force Database: http://ift.tt/2x588Yf
X-Force Database: http://ift.tt/2wEhie8
The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affects Rational Reporting for Development Intelligence appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team http://ift.tt/2zWbwUt
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.