IBM Security Bulletin: Vulnerabilities identified in IBM® Java SDK affect WebSphere Service Registry and Repository and WebSphere Service Registry and Repository Studio (CVE-2018-1656 and CVE-2018-12539)
Sep 13, 2018 9:00 am EDT
Categorized: High Severity
Share this post:
Vulnerabilities in IBM® SDK Java™ Technology Edition, Version 6 used by WebSphere Service Registry and Repository and WebSphere Service Registry and Repository Studio. These issues were disclosed as part of the IBM Java SDK updates in July 2018. This issue is also addressed by WebSphere Application Server Network Deployment shipped with WebSphere Service Registry and Repository.
CVE(s): CVE-2018-1656, CVE-2018-12539
Affected product(s) and affected version(s):
WebSphere Service Registry and Repository and WebSphere Service Registry and Repository Studio V8.5 and V8.0 are affected.
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10728399
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/144882
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148389
from IBM Product Security Incident Response Team https://ift.tt/2xavcmX