IBM Security Bulletin: Vulnerabilities in Oracle Outside In Technology affect IBM WebSphere Portal (January 2017 CPU)

Oracle Outside In Technology is used by and contained in IBM WebSphere Portal. A fix is available for security vulnerabilities in Oracle Outside In Technology that affect IBM WebSphere Portal (CVE-2017-3266 CVE-2017-3267 CVE-2017-3268 CVE-2017-3269 CVE-2017-3270 CVE-2017-3271 CVE-2017-3293 CVE-2017-3294 CVE-2017-3295).

CVE(s): CVE-2017-3266, CVE-2017-3267, CVE-2017-3268, CVE-2017-3269, CVE-2017-3270, CVE-2017-3271, CVE-2017-3293, CVE-2017-3294, CVE-2017-3295

Affected product(s) and affected version(s):

IBM WebSphere Portal 9.0
IBM WebSphere Portal 8.5
IBM WebSphere Portal 8.0
IBM WebSphere Portal 7.0
IBM WebSphere Portal 6.1
For unsupported versions IBM recommends upgrading to a fixed, supported version of the product.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2pCZBcg
X-Force Database: http://ift.tt/2kDqYgX
X-Force Database: http://ift.tt/2knh4Bk
X-Force Database: http://ift.tt/2kDmAhL
X-Force Database: http://ift.tt/2knmXih
X-Force Database: http://ift.tt/2kDoWgA
X-Force Database: http://ift.tt/2knnUXR
X-Force Database: http://ift.tt/2kDsC2b
X-Force Database: http://ift.tt/2knrPnh
X-Force Database: http://ift.tt/2kDxLr3

The post IBM Security Bulletin: Vulnerabilities in Oracle Outside In Technology affect IBM WebSphere Portal (January 2017 CPU) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2pCYZmI