IBM Security Bulletin: Multiple Java Vulnerabilities Impact IBM Control Center

Share this post:

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition, Version 7 and 8 that is used by IBM Control Center. These issues were disclosed as part of the IBM Java SDK updates in October 2017 and January 2018.

CVE(s): CVE-2017-10356, CVE-2018-2602

Affected product(s) and affected version(s):

IBM Control Center 5.4.2.1 through 5.4.2.2
IBM Control Center 6.0.0.0 through 6.0.0.2 iFix01
IBM Control Center 6.1.0.0 through 6.1.0.2 iFix02
IBM Control Center 6.1.1.0 through 6.1.1.0 iFix01

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg22015624
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133785
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137854



from IBM Product Security Incident Response Team https://ift.tt/2qO9NgY