IBM Security Bulletin: Multiple Vulnerabilities in IBM Runtime Environments Java Technology Edition, Versions 6, 7, & 8 Affect Transformation Extender

There are multiple vulnerabilities in IBM® Runtime Environments Java™ Technology Edition versions 6, 7, & 8 that are used by Transformation Extender. This issue was disclosed as part of the IBM Java SDK updates in October 2017.

CVE(s): CVE-2017-10356

Affected product(s) and affected version(s):

  • WebSphere Transformation Extender Design Studio
  • WebSphere Transformation Extender with Command Server
  • WebSphere Transformation Extender for Integration Servers
  • WebSphere Transformation Extender for Application Programming
  • WebSphere Transformation Extender with Launcher

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg22011566
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133785

The post IBM Security Bulletin: Multiple Vulnerabilities in IBM Runtime Environments Java Technology Edition, Versions 6, 7, & 8 Affect Transformation Extender appeared first on IBM PSIRT Blog.

Transformation Extender versionsCVEs
9.0.0 – 9.0.0.2
8.4.1 – 8.4.1.5
8.4.0 – 8.4.0.5
8.3.0 – 8.3.0.7
CVE-2017-10356


from IBM Product Security Incident Response Team http://ift.tt/2o7sx95