IBM Security Bulletin: Open Source Apache Xerces-C XML Parser Vulnerabilities for IBM Notes (CVE-2016-0729)

IBM Notes consumes Xerces-C++ 2.1 which is affected by a vulnerability. IBM has addressed the vulnerability and provided a fix.

CVE(s): CVE-2016-0729

Affected product(s) and affected version(s):

IBM Notes 9.0.1 FP6 and earlier release.
IBM Notes 9.0 IF4 and earlier release.
IBM Notes 8.5.3 FP6 IF12 and earlier release
IBM Notes 8.5.2 FP4 IF3 and earlier release
IBM Notes 8.5.1 FP5 IF3 and earlier release
IBM Notes 8.5 release.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2cgTDWr
X-Force Database: http://ift.tt/297OoIU



from IBM Product Security Incident Response Team http://ift.tt/2cgTpyB