IBM Security Bulletin: IBM Forms Server may be affected by an Apache Xerces-C XML Parser library vulnerability (CVE-2016-0729)

An IBM Form (XFDL document) that contains a specially crafted mark-up could crash IBM Forms Server. This may expose a vulnerability in its use of the Apache Xerces-C XML Parser library.

CVE(s): CVE-2016-0729

Affected product(s) and affected version(s):

IBM Forms Server 8.0.1
IBM Forms Server 8.1
IBM Forms Server 8.2
IBM Forms Server 8.2.1

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2coC7PJ
X-Force Database: http://ift.tt/297OoIU



from IBM Product Security Incident Response Team http://ift.tt/2coBTIp