IBM Security Bulletin: Multiple vulnerabilites in IBM Java Runtime affect IBM Spectrum Protect (Tivoli Storage Manager) Windows and Macintosh Client (CVE-2018-2603, CVE-2018-2633)

There are multiple vulnerabilities in the IBM® Runtime Environment Java™ used by the IBM Spectrum Protect (formerly Tivoli Storage Manager) Windows and Macintosh Client. These issues were disclosed as part of the IBM Java SDK updates in January 2018.

CVE(s): CVE-2018-2603, CVE-2018-2633

Affected product(s) and affected version(s):

The following versions of the IBM Spectrum Protect (formerly Tivoli Storage Manager) Windows and Macintosh Client are affected:

  • 8.1.0.0 through 8.1.4.0 Windows
    8.1.0.0 through 8.1.4.1 Macintosh
  • 7.1.0.0 through 7.1.8.2 Windows and Macintosh

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=swg22016042
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137855
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137885

The post IBM Security Bulletin: Multiple vulnerabilites in IBM Java Runtime affect IBM Spectrum Protect (Tivoli Storage Manager) Windows and Macintosh Client (CVE-2018-2603, CVE-2018-2633) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2Jje73a