IBM Security Bulletin: IBM Streams is affected by Libxml2 vulnerabilities (CVE-2016-4447, CVE-2016-4448, CVE-2016-4449)
A set of Libxml2 vulnerabilities were disclosed by the Libxml2 Project. Libxml2 is used by IBM Streams. IBM Streams has addressed the applicable CVEs.
CVE(s): CVE-2016-4447, CVE-2016-4448, CVE-2016-4449
Affected product(s) and affected version(s):
- IBM Streams Version 4.1.1.1 and earlier
- IBM InfoSphere Streams Version 4.0.1.2 and earlier
- IBM InfoSphere Streams Version 3.2.1.5 and earlier
- IBM InfoSphere Streams Version 3.1.0.7 and earlier
- IBM InfoSphere Streams Version 3.0.0.5 and earlier
- IBM InfoSphere Streams Version 2.0.0.4 and earlier
- IBM InfoSphere Streams Version 1.2.1.0
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2cZwUeN
X-Force Database: http://ift.tt/29qofDU
X-Force Database: http://ift.tt/29hoGgb
X-Force Database: http://ift.tt/29qou1O
from IBM Product Security Incident Response Team http://ift.tt/2cZwW6t