IBM Security Bulletin: Rational Test Control Panel in Rational Test Workbench and Rational Test Virtualization Server affected by multiple Apache Tomcat vulnerabilities

Apache Tomcat is vulnerable to a number of security issues affecting the Rational Test Control Panel component in IBM Rational Test Workbench and Rational Test Virtualization Server.



CVE(s): CVE-2015-5345, CVE-2015-5346, CVE-2015-5351, CVE-2016-0706, CVE-2016-0714, CVE-2016-0763, CVE-2015-5174


Affected product(s) and affected version(s):

Rational Test Control Panel component in Rational Test Virtualization Server and Rational Test Workbench versions:

  • All 8.0.x
  • All 8.5.0.x

Versions 8.5.1 and later are unaffected as they do not use Apache Tomcat.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1NygewA
X-Force Database: http://ift.tt/1rhWy5x
X-Force Database: http://ift.tt/1NSj9zW
X-Force Database: http://ift.tt/1rhWy5D
X-Force Database: http://ift.tt/1NSj9A0
X-Force Database: http://ift.tt/1rhWvqf
X-Force Database: http://ift.tt/1NSj7YV
X-Force Database: http://ift.tt/1rhWylT


from IBM Product Security Incident Response Team http://ift.tt/1Nygyv8