IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM MessageSight (CVE-2016-3598)
There is a vulnerability in IBM® Runtime Environment Java™ Versions 7, 7R1 and 8 that is used by IBM MessageSight. These issues were disclosed as part of the IBM Java SDK updates in July 2016.
CVE(s): CVE-2016-3598
Affected product(s) and affected version(s):
MessageSight 1.1
MessageSight 1.2 – 1.2.0.3
MessageSight 2.0
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2frY809
X-Force Database: http://ift.tt/2aGcUP3
from IBM Product Security Incident Response Team http://ift.tt/2frX9gG