IBM Security Bulletin: HTTP Response Splitting in Liberty affects IBM MessageSight (CVE-2016-0359)

There is a potential HTTP response splitting vulnerability in IBM WebSphere Application Server Liberty. IBM WebSphere Application Server Liberty is used by IBM MessageSight. IBM MessageSight has addressed the applicable CVE.

CVE(s): CVE-2016-0359

Affected product(s) and affected version(s):

IBM MessageSight V1.1 – 1.1.0.1, IBM MessageSight V1.2 – 1.2.0.3, IBM MessageSight V2.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2e3zRNi
X-Force Database: http://ift.tt/28YBUiZ



from IBM Product Security Incident Response Team http://ift.tt/2e3zuSR