IBM Security Bulletin: A security vulnerability in IBM Java Runtime affects IBM Systems Director Storage Control ( CVE-2015-4872)

There is a security vulnerability in IBM® Runtime Environment Java™ Technology Edition, Version 5 that is used by IBM Systems Director Storage Control. This issue was disclosed as part of the IBM Java updates for October 2015.

CVE(s): CVE-2015-4872

Affected product(s) and affected version(s):

From the IBM Systems Director command line enter smcli lsver to determine the level of IBM Systems Director installed.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2e3BuL1
X-Force Database: http://ift.tt/1WhPj9p

Affected Product and Version(s)Product and Version shipped as a component
IBM System Director Storage Control 4.2.1.0IBM Systems Director 6.2.1.x
IBM System Director Storage Control 4.2.1.1IBM Systems Director 6.3.0.0
IBM System Director Storage Control 4.2.2.xIBM Systems Director 6.3.1.x
IBM System Director Storage Control 4.2.3.xIBM Systems Director 6.3.2.x
IBM System Director Storage Control 4.2.4.xIBM Systems Director 6.3.3.x
IBM System Director Storage Control 4.2.6.xIBM Systems Director 6.3.5.x
IBM System Director Storage Control 4.2.7.xIBM Systems Director 6.3.6.x
IBM System Director Storage Control 4.2..x8IBM Systems Director 6.3.7.x


from IBM Product Security Incident Response Team http://ift.tt/2e3A3fH