IBM Security Bulletin: IBM Db2 Hosted is affected by the vulnerabilities known as Spectre and Meltdown

IBM Db2 Hosted is affected by the vulnerabilities known as Spectre and Meltdown, which can enable CPU data cache timing to be abused to bypass conventional memory security restrictions to gain access to privileged memory that should be inaccessible. 

CVE(s): CVE-2017-5753, CVE-2017-5715, CVE-2017-5754

Affected product(s) and affected version(s):

IBM Db2 Hosted all versions

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg22013053

The post IBM Security Bulletin: IBM Db2 Hosted is affected by the vulnerabilities known as Spectre and Meltdown appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2nMd6np