IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM Financial Transaction Manager for Corporate Payment Services

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Version 7, which is used by Financial Transaction Manager (FTM) for Corporate Payment Services. These issues were disclosed as part of the IBM Java SDK updates in Jul 2017.

CVE(s): CVE-2017-10115, CVE-2017-10116, CVE-2017-10102

Affected product(s) and affected version(s):

– FTM for CPS v2.1.1.0, v2.1.1.1, v2.1.1.2, v2.1.1.3, v2.1.1.4

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2h3Dw3z
X-Force Database: http://ift.tt/2xsr7ZC
X-Force Database: http://ift.tt/2wyaY8O
X-Force Database: http://ift.tt/2veVuCa

The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM Financial Transaction Manager for Corporate Payment Services appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2xZi9Ua