IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM Sterling Connect:Direct FTP+ (CVE-2016-3426)

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Versions 7.0.9.30 and 6.0.16.20 that are used by IBM Sterling Connect:Direct FTP+. These issues were disclosed as part of the IBM Java SDK updates in April 2016.

CVE(s): CVE-2016-3426

Affected product(s) and affected version(s):

IBM Sterling Connect:Direct FTP+ 1.3.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2fc25Jj
X-Force Database: http://ift.tt/1N2N2xe



from IBM Product Security Incident Response Team http://ift.tt/2fc4vI0