IBM Security Bulletin: Rational Test Control Panel in Rational Test Workbench and Rational Test Virtualization Server affected by multiple Apache Tomcat vulnerabilities
Apache Tomcat is vulnerable to a number of security issues affecting the Rational Test Control Panel component in IBM Rational Test Workbench and Rational Test Virtualization Server.
CVE(s): CVE-2015-5345, CVE-2015-5346, CVE-2015-5351, CVE-2016-0706, CVE-2016-0714, CVE-2016-0763, CVE-2015-5174
Affected product(s) and affected version(s):
Rational Test Control Panel component in Rational Test Virtualization Server and Rational Test Workbench versions:
- All 8.0.x
- All 8.5.0.x
Versions 8.5.1 and later are unaffected as they do not use Apache Tomcat.
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1NygewA
X-Force Database: http://ift.tt/1rhWy5x
X-Force Database: http://ift.tt/1NSj9zW
X-Force Database: http://ift.tt/1rhWy5D
X-Force Database: http://ift.tt/1NSj9A0
X-Force Database: http://ift.tt/1rhWvqf
X-Force Database: http://ift.tt/1NSj7YV
X-Force Database: http://ift.tt/1rhWylT
from IBM Product Security Incident Response Team http://ift.tt/1Nygyv8