IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affects Rational Insight

There are vulnerabilities in IBM® SDK Java™ Technology Edition, Version 6 that is used by Rational Insight. The issues were disclosed as part of the IBM Java SDK updates in October 2016 and January 2017.

CVE(s): CVE-2016-5597, CVE-2016-5554, CVE-2017-3289, CVE-2017-3272, CVE-2017-3241, CVE-2017-3260, CVE-2016-5546, CVE-2017-3253, CVE-2016-5548, CVE-2016-5549, CVE-2017-3252, CVE-2016-5547, CVE-2016-5552, CVE-2017-3261, CVE-2017-3231, CVE-2017-3259, CVE-2016-2183

Affected product(s) and affected version(s):

Principal Product and Version(s)Affected Supporting Product(s) and Version(s)
Rational Insight 1.1, 1.1.1, 1.1.1.1 and 1.1.1.2Cognos BI 10.1.1
Rational Insight 1.1.1.3Cognos BI 10.2.1
Rational Insight 1.1.1.4, 1.1.1.5 and 1.1.1.6Cognos BI 10.2.1 Fix pack 2
Jazz Reporting Service 5.0, 5.0.1 and 5.0.2
Rational Insight 1.1.1.7Cognos BI 10.2.1 Fix pack 2
Jazz Reporting Service 6.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2soL98B
X-Force Database: http://ift.tt/2e5pD2s
X-Force Database: http://ift.tt/2eDqzaq
X-Force Database: http://ift.tt/2lA6pnI
X-Force Database: http://ift.tt/2msIV19
X-Force Database: http://ift.tt/2lAcror
X-Force Database: http://ift.tt/2msG8VN
X-Force Database: http://ift.tt/2lA4akm
X-Force Database: http://ift.tt/2msWpdg
X-Force Database: http://ift.tt/2lAx183
X-Force Database: http://ift.tt/2msD77U
X-Force Database: http://ift.tt/2lAk4Lp
X-Force Database: http://ift.tt/2msBF5I
X-Force Database: http://ift.tt/2lAiqcB
X-Force Database: http://ift.tt/2msOwVj
X-Force Database: http://ift.tt/2lAc9xE
X-Force Database: http://ift.tt/2msIPqs
X-Force Database: http://ift.tt/2dR3VyC

The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affects Rational Insight appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2r5EKLu