IBM Security Bulletin: Open Source XStream as used in IBM QRadar SIEM is vulnerable to Denial of Service. (CVE-2017-7957)

Open Source XStream is vulnerable to a Denial of Service attack.

CVE(s): CVE-2017-7957

Affected product(s) and affected version(s):

· IBM QRadar SIEM 7.2.0 – 7.2.8 Patch 8

· IBM QRadar SIEM 7.3.0 – 7.3.0 Patch 3

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2wNUAQf
X-Force Database: http://ift.tt/2welIEu

The post IBM Security Bulletin: Open Source XStream as used in IBM QRadar SIEM is vulnerable to Denial of Service. (CVE-2017-7957) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2wNNHyg