IBM Security Bulletin: Vulnerability may affect IBM® SDK for Node.js™ (CVE-2017-14919)

A vulnerability was disclosed in October 2017 by the Node.js project. IBM SDK for Node.js has addressed the CVE.

CVE(s): CVE-2017-14919

Affected product(s) and affected version(s):

This vulnerability affects IBM SDK for Node.js releases between v4.8.2.0 and 4.8.4.0.
This vulnerability affects IBM SDK for Node.js releases between v6.10.2.0 and 6.11.4.0.
This vulnerability affects IBM SDK for Node.js v8.6.0.0 and earlier releases.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2zElaNA
X-Force Database: http://ift.tt/2hq6hEr

The post IBM Security Bulletin: Vulnerability may affect IBM® SDK for Node.js™ (CVE-2017-14919) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2zFKWRy