Pivotal Spring Framework, used by IBM TRIRIGA Application Platform, is vulnerable to a denial of service, caused by improper handling of range request by the ResourceHttpRequestHandler.
CVE(s): CVE-2018-15756
Affected product(s) and affected version(s):
| Affected Tririga | Affected Versions |
|---|---|
| IBM TRIRIGA Application Platform | 3.5.3 |
| IBM TRIRIGA Application Platform | 3.6.0 |
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10879449
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/151641
The post IBM Security Bulletin: Vulnerability in Pivotal Spring Framework affects IBM TRIRIGA Application Platform (CVE-2018-15786) appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ibm.co/2LotZ5B
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.