IBM Security Bulletin: Current Releases of IBM® SDK for Node.js™ are affected by CVE-2016-4560

IBM SDK for Node.js installation executables on the Windows platform are affected by CVE-2016-4560

CVE(s): CVE-2016-4560

Affected product(s) and affected version(s):

These vulnerabilities affect IBM SDK for Node.js v1.1.1.1 and previous releases.
These vulnerabilities affect IBM SDK for Node.js v1.2.0.12 and previous releases.
These vulnerabilities affect IBM SDK for Node.js v4.4.4.0 and previous releases.
These vulnerabilities affect IBM SDK for Node.js v6.1.0.0 and previous releases.

Note that this vulnerability affects IBM SDK for Node.js on the Windows platform only. Other platforms are not affected.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1Ue5HWM
X-Force Database: http://ift.tt/1Vw3dW4



from IBM Product Security Incident Response Team http://ift.tt/1OleLdt