IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM Host On-Demand (CVE-2016-0264 ,CVE-2016-3449)

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Version 6.0, 7.0,7R1 and 8.0 , that is used by IBM Host On -Demand This issue was disclosed as part of the IBM Java SDK updates in April 2016.



CVE(s): CVE-2016-3449, CVE-2016-0264


Affected product(s) and affected version(s):

IBM Host On-Demand 11.0.14 and earlier
IBM Host On-Demand 12.0



Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1Tuz3Tx
X-Force Database: http://ift.tt/1N2N48x
X-Force Database: http://ift.tt/1Tg5wqG


from IBM Product Security Incident Response Team http://ift.tt/20vxzY5