There is a Windows DLL injection vulnerability in IBM® Runtime Environment Java Version JRE71SR4FP15, JRE71SR4FP45 and JRE8SR5FP36 used by Collaboration and Deployment Services on windows platform. This issue was disclosed as part of the IBM Java SDK updates in January 2020.
Affected product(s) and affected version(s):
Affected Product(s) | Version(s) |
SPSS Collaboration and Deployment Services | 7.0.0.1 |
SPSS Collaboration and Deployment Services | 8.0 |
SPSS Collaboration and Deployment Services | 8.1 |
SPSS Collaboration and Deployment Services | 8.1.1 |
SPSS Collaboration and Deployment Services | 8.2 |
SPSS Collaboration and Deployment Services | 8.2.1 |
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www.ibm.com/support/pages/node/6195498
The post Security Bulletin: Windows DLL injection vulnerability in IBM Java Runtime affects Collaboration and Deployment Services appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ift.tt/2z1iw6i
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.