IBM Security Bulletin: Rational Test Control Panel in Rational Test Workbench and Rational Test Virtualization Server affected by Apache Tomcat vulnerability (CVE-2016-6816)

Apache Tomcat is vulnerable to a security issue affecting the Rational Test Control Panel component in IBM Rational Test Workbench and Rational Test Virtualization Server.

CVE(s): CVE-2016-6816

Affected product(s) and affected version(s):

Rational Test Control Panel component in Rational Test Virtualization Server and Rational Test Workbench versions:

  • 8.0
  • 8.0.0.1
  • 8.0.0.2
  • 8.0.0.3
  • 8.0.0.4
  • 8.0.0.5
  • 8.0.1
  • 8.0.1.1
  • 8.0.1.2
  • 8.0.1.3
  • 8.0.1.4
  • 8.0.1.5
  • 8.0.1.6
  • 8.5
  • 8.5.0.1
  • 8.5.0.2
  • 8.5.0.3
  • 8.5.0.4

Versions 8.5.1 and later are unaffected as they do not use Apache Tomcat.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2nMyACu
X-Force Database: http://ift.tt/2iIaaqs

The post IBM Security Bulletin: Rational Test Control Panel in Rational Test Workbench and Rational Test Virtualization Server affected by Apache Tomcat vulnerability (CVE-2016-6816) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2nMMSD2