IBM Security Bulletin: July 2015 Java Platform Standard Edition Vulnerabilities in Multiple N series Products

Multiple N series products incorporate the Oracle Java Platform, Standard Edition (Java SE) software libraries. Java SE (JDK and JRE) versions below 8u51, 7u85 and 6u101 and OpenJDK versions below 1.7.0.85 and 1.8.0.51 are susceptible to multiple vulnerabilities, potentially leading to an unauthorized Operating System takeover, a partial denial of service (DOS), an unauthorized read, update, insert or delete access to a subset of Java SE accessible data. Multiple N series products have addressed the applicable CVEs.

CVE(s): CVE-2015-2638, CVE-2015-4733, CVE-2015-4732, CVE-2015-2590, CVE-2015-4731, CVE-2015-2628, CVE-2015-4760, CVE-2015-4736, CVE-2015-4748, CVE-2015-2664, CVE-2015-2632, CVE-2015-2637, CVE-2015-2619, CVE-2015-2621, CVE-2015-2613, CVE-2015-2601, CVE-2015-2659, CVE-2015-4749, CVE-2015-2596, CVE-2015-4729, CVE-2015-2625

Affected product(s) and affected version(s):

NS OnCommand Core Package: 5.2, 5.2R1, 5.2.1P1, 5.2.1P2;
NS OnCommand Unified Manager for DataONTAP: 6.1R1;
N series VASA Provider: 1.0, 1.0.1;
SnapManager for Oracle: 3.2, 3.3, 3.3.1, 3.4;
SnapManager for SAP: 3.2, 3.3, 3.3.1, 3.4;
Virtual Storage Console for VMware vSphere: 4.2.1, 5.0, 6.0, 6.1;

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2kaBYFf
X-Force Database: http://ift.tt/2jg5Kny
X-Force Database: http://ift.tt/2kaAXwJ
X-Force Database: http://ift.tt/2jg4npc
X-Force Database: http://ift.tt/2kawzOq
X-Force Database: http://ift.tt/2jg7VHP
X-Force Database: http://ift.tt/2kaAhYl
X-Force Database: http://ift.tt/2jg5rtj
X-Force Database: http://ift.tt/2kaIpYX
X-Force Database: http://ift.tt/2jgd4jl
X-Force Database: http://ift.tt/2kazSoE
X-Force Database: http://ift.tt/2jg2xVn
X-Force Database: http://ift.tt/2kaE2wE
X-Force Database: http://ift.tt/2jg4Rvp
X-Force Database: http://ift.tt/2kanC7E
X-Force Database: http://ift.tt/2919wPf
X-Force Database: http://ift.tt/1SAJRtw
X-Force Database: http://ift.tt/2jgcYrP
X-Force Database: http://ift.tt/1NzQBex
X-Force Database: http://ift.tt/2jgd2YA
X-Force Database: http://ift.tt/2kaJHD9
X-Force Database: http://ift.tt/1SAJTSm



from IBM Product Security Incident Response Team http://ift.tt/2kaFxuZ