IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect Rational Developer for i and Rational Developer for AIX and Linux

Share this post:

There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Versions 7 and 8 that are used by Rational Developer for i and Rational Developer for AIX and Linux. These issues were disclosed as part of the IBM Java SDK updates in October 2017 (CVE-2017-10295, CVE-2017-10355, CVE-2016-9841, CVE-2017-10293, CVE-2017-10356, CVE-2017-10388) and January 2018 (CVE-2018-2579, CVE-2018-2602, CVE-2018-2603, CVE-2018-2618, CVE-2018-2634, CVE-2018-2633) and are included in the January update.

CVE(s): CVE-2017-10295, CVE-2017-10355, CVE-2016-9841, CVE-2017-10293, CVE-2017-10356, CVE-2017-10388, CVE-2018-2579, CVE-2018-2602, CVE-2018-2603, CVE-2018-2618, CVE-2018-2634, CVE-2018-2633

Affected product(s) and affected version(s):

Product NameVersions Affected
Rational Developer for i9.0, 9.0.0.1, 9.0.1, 9.1, 9.1.1, 9.1.1.1, 9.5, 9.5.0.1, 9.5.0.2, 9.5.0.3, 9.5.1, 9.5.1.1, 9.5.1.2
Rational Developer for AIX and Linux, AIX COBOL Edition9.0, 9.0.0.1, 9.0.1, 9.1, 9.1.1, 9.1.1.1, 9.1.1.2, 9.1.1.3, 9.1.1.4
Rational Developer for AIX and Linux, C/C++ Edition9.0, 9.0.0.1, 9.0.1, 9.1, 9.1.1, 9.1.1.1, 9.1.1.2, 9.1.1.3, 9.1.1.4

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=swg22015346
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133729
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133784
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120509
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133727
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133785
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133813
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137833
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137854
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137855
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137870
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137886
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137885



from IBM Product Security Incident Response Team https://ift.tt/2GWXtoA