Friday, February 7, 2020

Security Bulletin: Multiple vulnerabilities affect IBM Cloud Object Storage Systems (February 2020v1)

Feb 7, 2020 7:00 pm EST

Categorized: Medium Severity

Share this post:

Multiple vulnerabilities affect IBM Cloud Object Storage Systems. These vulnerabilities have been addressed in the latest ClevOS releases.

Affected product(s) and affected version(s):

 CVE-ID Affected ClevOS Release
CVE-2019-17189 3.12.4.117 and prior 3.12 releases
3.13.6.64 and prior 3.13 releases
3.14.1.70 and prior 3.14.1 releases
3.14.3.58 and prior 3.14.3 and 3.14.2 releases
CVE-2018-17199 3.12.4.117 and prior 3.12 releases
3.13.6.64 and prior 3.13 releases
3.14.1.70 and prior 3.14.1 releases
3.14.3.58 and prior 3.14.3 and 3.14.2 releases
CVE-2019-11068 3.12.4.164 and prior 3.12 releases
3.13.6.113 and prior 3.13 releases
3.14.7.112 and prior 3.14 releases 
CVE-2019-0217 3.12.4.149 and prior 3.12 releases
3.13.6.96 and prior 3.13 releases
3.14.3.31 and prior 3.14 releases 
CVE-2019-0196 3.12.4.149 and prior 3.12 releases
3.13.6.96 and prior 3.13 releases 
CVE-2019-0220 3.12.4.149 and prior 3.12 releases
3.13.6.96 and prior 3.13 releases
3.14.3.65 and prior 3.14 releases
CVE-2019-15903 3.12.4.177 and prior 3.12 releases
3.13.6.134 and prior 3.13 releases
3.14.6.87 and prior 3.14 releases
CVE-2018-20685 3.12.4.149 and prior 3.12 releases
3.13.6.96 and prior 3.13 releases
3.14.3.31 and prior 3.14 releases
CVE-2019-6111 3.12.4.149 and prior 3.12 releases
3.13.6.96 and prior 3.13 releases
3.14.3.31 and prior 3.14 releases
CVE-2019-6109 3.12.4.149 and prior 3.12 releases
3.13.6.96 and prior 3.13 releases
3.14.3.31 and prior 3.14 releases
CVE-2019-3842 3.12.4.164 and prior 3.12 releases
3.13.6.112 and prior 3.13 releases
3.14.3.65 and prior 3.14 releases
CVE-2019-10098 3.12.4.177 and prior 3.12 releases
3.13.6.134 and prior 3.13 releases
3.14.6.66 and prior 3.14 releases
CVE-2019-10082 3.12.4.177 and prior 3.12 releases
3.13.6.134 and prior 3.13 releases
3.14.6.66 and prior 3.14 releases
CVE-2019-10092 3.12.4.177 and prior 3.12 releases
3.13.6.134 and prior 3.13 releases
3.14.6.66 and prior 3.14 releases
CVE-2019-10081 3.12.4.177 and prior 3.12 releases
3.13.6.134 and prior 3.13 releases
3.14.6.66 and prior 3.14 releases

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/1415193



from IBM Product Security Incident Response Team https://ift.tt/378RANx

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.