IBM Security Bulletin: Vulnerabilities in Apache HTTP Components Libraries Affect IBM B2B Advanced Communications

The Apache httpclient-4.0.2.jar used by IBM B2B Advanced Communications has vulnerabilities.

CVE(s): CVE-2015-5262, CVE-2014-3577

Affected product(s) and affected version(s):

IBM Multi-Enterprise Integration Gateway 1.0 – 1.0.0.1

IBM B2B Advanced Communications 1.0.0.2 – 1.0.0.5_3

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2DAso5j
X-Force Database: http://ift.tt/2sN6O8m
X-Force Database: http://ift.tt/2fjnu0n

The post IBM Security Bulletin: Vulnerabilities in Apache HTTP Components Libraries Affect IBM B2B Advanced Communications appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2FDlnRI