IBM Security Bulletin: Vulnerabilities in Oracle Outside In Technology affect IBM WebSphere Portal (October 2016 CPU)

Oracle Outside In Technology is used by and contained in IBM WebSphere Portal. A fix is available for security vulnerabilities in Oracle Outside In Technology that affect IBM WebSphere Portal (CVE-2016-5558, CVE-2016-5574, CVE-2016-5577, CVE-2016-5578, CVE-2016-5579, CVE-2016-5588).

CVE(s): CVE-2016-5558, CVE-2016-5574, CVE-2016-5577, CVE-2016-5578, CVE-2016-5579, CVE-2016-5588

Affected product(s) and affected version(s):

WebSphere Portal 8.5
WebSphere Portal 8.0
WebSphere Portal 7
WebSphere Portal 6.1
For unsupported versions IBM recommends upgrading to a fixed, supported version of the product.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2i0L71O
X-Force Database: http://ift.tt/2gTmz5K
X-Force Database: http://ift.tt/2i0HMQu
X-Force Database: http://ift.tt/2gTr5Bj
X-Force Database: http://ift.tt/2i0HOI6
X-Force Database: http://ift.tt/2gTgXss
X-Force Database: http://ift.tt/2i0RLVK



from IBM Product Security Incident Response Team http://ift.tt/2gTjbbn