Friday, October 23, 2020

Security Bulletin: Vulnerabilities in Curl affect PowerSC (CVE-2020-8169, CVE-2020-8177)

Oct 23, 2020 8:00 pm EDT

Categorized: Medium Severity

Share this post:

There are vulnerabilities in Curl that affect PowerSC.

Affected product(s) and affected version(s):

Affected Product(s) Version(s)
PowerSC 1.2
PowerSC 1.3

The vulnerabilities in the following filesets are being addressed:

Fileset   Lower Level  Upper Level

powerscStd.tnc_pm

 1.2.0.3  1.3.0.3

curl-7.71.1-1.aix6.1.ppc.rpm

 7.19.4  7.67.0

Note:  To find out whether the affected PowerSC filesets are installed on your systems, refer to the lslpp command found in AIX user's guide. To find out whether the affected curl filesets are installed on your systems, refer to the rpm command found in AIX user's guide.

 

Example:  lslpp -l | grep powerscStd

Example:  rpm -qa | grep curl

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6353035



from IBM Product Security Incident Response Team https://ift.tt/2HkBaL9

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.