IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect WebSphere Cast Iron

There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 7 SR10 FP5 and Version 6 SR16 FP45 used by WebSphere Cast Iron. These issues were disclosed as part of the IBM Java SDK updates in Jul 2017.

CVE(s): CVE-2017-10125, CVE-2017-10067, CVE-2017-10115, CVE-2017-10243

Affected product(s) and affected version(s):

WebSphere Cast Iron v 7.5.1.0, 7.5.0.1, 7.5.0.0
WebSphere Cast Iron v 7.0.0.2, 7.0.0.1, 7.0.0.0
WebSphere Cast Iron v 6.4.0.1, 6.4.0.0
WebSphere Cast Iron v 6.3.0.2, 6.3.0.1, 6.3.0.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2B9Rczd
X-Force Database: http://ift.tt/2vfEyLU
X-Force Database: http://ift.tt/2x4YZ1U
X-Force Database: http://ift.tt/2xsr7ZC
X-Force Database: http://ift.tt/2vQ1oZY

The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect WebSphere Cast Iron appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2z8F0gK