Monday, July 27, 2020

Security Bulletin: XML parsing vulnerability in Apache Santuario might affect IBM Business Automation Workflow and IBM Business Process Manager (BPM) – CVE-2019-12400

Jul 27, 2020 8:03 pm EDT

Categorized: Medium Severity

Share this post:

A XML parsing vulnerability in Apache Santuario might affect IBM Business Process Manager and IBM Business Automation Workflow are vulnerable.

Affected product(s) and affected version(s):

 

 

Affected Product(s) Version(s)          
IBM Business Automation Workflow V19.0
V18.0
IBM Business Process Manager V8.6
V8.5
V8.0

 

Note that Business Automation Workflow 20.0.0.1 is not affected.

For earlier and unsupported versions of the products, IBM recommends upgrading to a fixed, supported version of the product.

 

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6253287



from IBM Product Security Incident Response Team https://ift.tt/3f6gtNR

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.