IBM Security Bulletin: A Vulnerability in Apache Tomcat affects the IBM FlashSystem models 840 and 900

There is a vulnerability in Apache Tomcat to which the IBM® FlashSystem™ 840 and FlashSystem™ 900 are susceptible. An exploit of this vulnerability (CVE-2017-6056) could allow a remote attacker to wage a denial of service attack.

CVE(s): CVE-2017-6056

Affected product(s) and affected version(s):

FlashSystem 840 machine type and models (MTMs) affected include 9840-AE1 and 9843-AE1.

FlashSystem 900 MTMs affected include 9840-AE2 and 9843-AE2.

Code versions affected include supported VRMFs:
· 1.4.0.0 – 1.4.2.0
· 1.3.0.0 – 1.3.0.5

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2ptprv0
X-Force Database: http://ift.tt/2mUuNys

The post IBM Security Bulletin: A Vulnerability in Apache Tomcat affects the IBM FlashSystem models 840 and 900 appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2ptr0Js