IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM MQ Light (CVE-2016-3426)

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Version 7 Service Refresh 9 Fix Pack 31 and earlier releases, and IBM® Runtime Environment Java™ Version 7R1 Service Refresh 3 Fix Pack 31 and earlier releases, that is used by IBM MQ Light. These issues were disclosed as part of the IBM Java SDK updates in April 2016.

CVE(s): CVE-2016-3426

Affected product(s) and affected version(s):

The vulnerabilities affect users of IBM MQ Light 1.0, 1.0.0.1, 1.0.0.2, 1.0.2 on all platforms

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2cOGXTR
X-Force Database: http://ift.tt/1N2N2xe



from IBM Product Security Incident Response Team http://ift.tt/2dFe3eQ