IBM Security Bulletin: Multiple vulnerabilities in libxml2 affect IBM Cognos Metrics Manager (CVE-2016-3705, CVE-2016-4447, CVE-2016-4448)

The vulnerabilities have been addressed in the libxml2 component of IBM Cognos Metrics Manager

CVE(s): CVE-2016-3705, CVE-2016-4447, CVE-2016-4448

Affected product(s) and affected version(s):

  • IBM Cognos Metrics Manager 10.2.2
  • IBM Cognos Metrics Manager 10.2.1
  • IBM Cognos Metrics Manager 10.2
  • IBM Cognos Metrics Manager 10.1.1

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2j41N8K
X-Force Database: http://ift.tt/1syye00
X-Force Database: http://ift.tt/29qofDU
X-Force Database: http://ift.tt/29hoGgb



from IBM Product Security Incident Response Team http://ift.tt/2j3W3fi