IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM Security AppScan Enterprise

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition, Version 8.0 SR5 that is used by IBM Security AppScan Enterprise. These issues were disclosed as part of the IBM Java SDK updates in May 2018.

CVE(s): CVE-2018-2579, CVE-2018-2602, CVE-2018-2603, CVE-2018-2633, CVE-2018-2783, CVE-2018-2798

Affected product(s) and affected version(s):

IBM Security AppScan Enterprise 9.0.3.8 and earlier versions.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg22016709
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137833
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137854
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137855
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137885
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141939
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141954

The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM Security AppScan Enterprise appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2kMDHyv