IBM Security Bulletin: Vulnerabilities in Apache Tomcat affects the IBM FlashSystem model V840

There are vulnerabilities in Apache Tomcat to which the IBM® FlashSystem™ V840 is susceptible. An exploit of this vulnerability (CVE-2017-5647) could make the system susceptible to an attack which could allow an attacker to obtain sensitive information.

CVE(s): CVE-2017-5647

Affected product(s) and affected version(s):

Storage Node machine type and models (MTMs) affected: 9840-AE1 and 9843-AE1
Controller Node MTMs affected: 9846-AC0, 9848-AC0, 9846-AC1, and 9848-AC1

Supported storage node code versions which are affected
· VRMFs prior to 1.3.0.9
· VRMFs prior to 1.4.7.0

Supported controller node code versions which are affected
· VRMFs prior to 7.6.1.8
· VRMFs prior to 7.7.1.7
· VRMFs prior to 7.8.1.3

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2CHQ6v5
X-Force Database: http://ift.tt/2roExam

The post IBM Security Bulletin: Vulnerabilities in Apache Tomcat affects the IBM FlashSystem model V840 appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2mihBVP