IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM Tivoli Application Dependency Discovery Manager (TADDM)

There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 7 SR10-FP20 and Version 8 SR5-FP11 used by IBM Tivoli Application Dependency Discovery Manager (TADDM). These issues were disclosed as part of the IBM Java SDK updates in April 2018.

CVE(s): CVE-2018-2800 , CVE-2018-2795 , CVE-2018-2796 , CVE-2018-2797 , CVE-2018-2798 , CVE-2018-2799 , CVE-2018-2815 , CVE-2018-2783 , CVE-2018-2794 , CVE-2018-2814 , CVE-2018-2790

Affected product(s) and affected version(s):

TADDM 7.2.2.5

TADDM 7.3 (7.3.0.0 – 7.3.0.5)

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10719933
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141956for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141951for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141952for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141953for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141954for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141955for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141971for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141939for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141950for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141970for
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141946for

The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM Tivoli Application Dependency Discovery Manager (TADDM) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2vSPVLr