IBM Security Bulletin: Node.js as used in IBM QRadar Packet Capture is susceptible to multiple vulnerabilities
Node.js as used in IBM QRadar Packet Capture has been updated to resolve multiple vulnerabilities
CVE(s): CVE-2018-7158, CVE-2018-7159, CVE-2018-7160, CVE-2018-7161, CVE-2018-12115, CVE-2018-7166
Affected product(s) and affected version(s):
IBM Security QRadar Packet Capture 7.2.0 – 7.2.8 Patch 4
IBM Security QRadar Packet Capture 7.3.0 – 7.3.1 Patch 1
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10738991
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/143449
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/143448
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/143447
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/144736
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148426
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148425
The post IBM Security Bulletin: Node.js as used in IBM QRadar Packet Capture is susceptible to multiple vulnerabilities appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ift.tt/2z7uwk7