IBM Security Bulletin: Vulnerabilities in Open Source Expact affect Tivoli Network Manager IP Edition
Vulnerabilities in Open Source Expat affect Tivoli Network Manager IP Edition. Tivoli Network Manager IP Edition has addressed the applicable CVEs
CVE(s): CVE-2012-6702, CVE-2016-5300, CVE-2012-0876, CVE-2012-1147, CVE-2012-1148
Affected product(s) and affected version(s):
Tivoli Network Manager IP Edition 3.9.0 – 3.9.0.5
Tivoli Network Manager IP Edition 4.1.1 – 4.1.1.1
Tivoli Network Manager IP Edition 4.2.0 – 4.2.0.1
Impact: Alcatel5620SamSoapFindToFile Collector, Collector Finder and Collector Helper use Expat XML Parser library
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2k8YoDO
X-Force Database: http://ift.tt/2dmagTH
X-Force Database: http://ift.tt/2cwoPxW
X-Force Database: http://ift.tt/2aA9yyg
X-Force Database: http://ift.tt/2az7wLo
X-Force Database: http://ift.tt/2aAaouW
from IBM Product Security Incident Response Team http://ift.tt/2k90F1E