IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect the IBM Spectrum Protect Server (CVE-2018-2579, CVE-2018-2603, CVE-2018-2783)
There are multiple vulnerabilities in IBM® Runtime Environment Java™ used by the IBM Spectrum Protect Server. These issues were disclosed as part of the IBM Java SDK updates in January 2018 and April 2018.
CVE(s): CVE-2018-2579, CVE-2018-2603, CVE-2018-2783
Affected product(s) and affected version(s):
This vulnerability affects the IBM Spectrum Protect Server levels 8.1.3.0 through 8.1.5.x.
Note that releases 8.1.3.0 and below of the IBM Spectrum Protect (formerly Tivoli Storage Manager) Server are not affected.
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10729853
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137833
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137855
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141939
The post IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect the IBM Spectrum Protect Server (CVE-2018-2579, CVE-2018-2603, CVE-2018-2783) appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ift.tt/2I7pGqi