There are multiple vulnerabilities in IBM® SDK Java Technology Edition, Version 7 SR10-FP40 and Version 8 SR5-FP30 used by IBM Tivoli Application Dependency Discovery Manager (TADDM). These issues were disclosed as part of the IBM Java SDK updates in April 2019.
CVE(s): CVE-2019-2698, CVE-2019-2697, CVE-2019-2602, CVE-2019-2684, CVE-2019-10245
Affected product(s) and affected version(s):
TADDM 7.2.2.5
TADDM 7.3 (7.3.0.0 – 7.3.0.6)
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10887899
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/159790
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/159789
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/159698
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/159776
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/160010
The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM Tivoli Application Dependency Discovery Manager (TADDM) appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ibm.co/2WXPiRa
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.