IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM MQ Light (CVE-2016-3426)
There are multiple vulnerabilities in IBM® Runtime Environment Java™ Version 7 Service Refresh 9 Fix Pack 31 and earlier releases, and IBM® Runtime Environment Java™ Version 7R1 Service Refresh 3 Fix Pack 31 and earlier releases, that is used by IBM MQ Light. These issues were disclosed as part of the IBM Java SDK updates in April 2016.
CVE(s): CVE-2016-3426
Affected product(s) and affected version(s):
The vulnerabilities affect users of IBM MQ Light 1.0, 1.0.0.1, 1.0.0.2, 1.0.2 on all platforms
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2cOGXTR
X-Force Database: http://ift.tt/1N2N2xe
from IBM Product Security Incident Response Team http://ift.tt/2dFe3eQ