IBM Security Bulletin: Multiple Vulnerabilities in IBM® Java SDK affect Tivoli Netcool/OMNIbus WebGUI July 2017 CPU

There are multiple vulnerabiltities in the IBM® SDK Java™ Technology Edition that is shipped with IBM WebSphere Application Server (WAS). These issues were disclosed as part of the IBM Java SDK updates in July 2017. These may affect some configurations of WAS and Tivoli Netcool/OMNIbus WebGUI. WAS is shipped as a component of Tivoli Netcool/OMNIbus WebGUI. Information about a security vulnerability affecting WAS has been published in a security bulletin.

CVE(s): CVE-2017-10115, CVE-2017-10116

Affected product(s) and affected version(s):

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2w4WUUf
X-Force Database: http://ift.tt/2xsr7ZC
X-Force Database: http://ift.tt/2wyaY8O

The post IBM Security Bulletin: Multiple Vulnerabilities in IBM® Java SDK affect Tivoli Netcool/OMNIbus WebGUI July 2017 CPU appeared first on IBM PSIRT Blog.

Principal Product and Version(s)Affected Supporting Product and Version
WebGUI 7.4.0 GA and FPembedded Websphere Application Server 7.0
WebGUI 8.1.0 GA and FPWebsphere Application Server 8.5


from IBM Product Security Incident Response Team http://ift.tt/2y1PbDV