There are vulnerabilities in IBM® Runtime Environment Java Version 7 that affect the WebSphere DataPower XC10 Appliance. The issues were disclosed as part of the IBM SDK, Java Technology Edition updates in January and April 2019.
CVE(s): CVE-2019-2426, CVE-2018-1890, CVE-2018-12547, CVE-2019-2684
Affected product(s) and affected version(s):
WebSphere DataPower XC10 Appliance Version 2.5
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10884080
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/155744
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/152081
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/157512
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/159776
The post IBM Security Bulletin: Vulnerabilities in the Java runtime environment that IBM provides affect WebSphere DataPower XC10 Appliance appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ibm.co/2XqzEKd
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.