IBM Security Bulletin: Multiple Security Vulnerabilities exist in IBM Cognos TM1

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Version 7. These issues were disclosed as part of the IBM Java SDK updates in October 2016 and January 2017. Multiple Open Source OpenSSL vulnerabilities have also been addressed.

CVE(s): CVE-2016-2183, CVE-2016-5546, CVE-2016-5547, CVE-2016-5548, CVE-2016-5549, CVE-2016-5552, CVE-2016-5573, CVE-2016-5597, CVE-2016-7055, CVE-2017-3732

Affected product(s) and affected version(s):

  • IBM Cognos TM1 10.2
  • IBM Cognos TM1 10.2.2

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2v5nE3i
X-Force Database: http://ift.tt/2dR3VyC
X-Force Database: http://ift.tt/2lA4akm
X-Force Database: http://ift.tt/2msBF5I
X-Force Database: http://ift.tt/2lAx183
X-Force Database: http://ift.tt/2msD77U
X-Force Database: http://ift.tt/2lAiqcB
X-Force Database: http://ift.tt/2eDrVCd
X-Force Database: http://ift.tt/2e5pD2s
X-Force Database: http://ift.tt/2hjUUfe
X-Force Database: http://ift.tt/2kDymIW

The post IBM Security Bulletin: Multiple Security Vulnerabilities exist in IBM Cognos TM1 appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2vp6osu