IBM Security Bulletin: Node.js as used in IBM QRadar Packet Capture is susceptible to multiple vulnerabilities

Node.js as used in IBM QRadar Packet Capture has been updated to resolve multiple vulnerabilities

CVE(s): CVE-2018-7158, CVE-2018-7159, CVE-2018-7160, CVE-2018-7161, CVE-2018-12115, CVE-2018-7166

Affected product(s) and affected version(s):

IBM Security QRadar Packet Capture 7.2.0 – 7.2.8 Patch 4

IBM Security QRadar Packet Capture 7.3.0 – 7.3.1 Patch 1

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10738991
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/143449
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/143448
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/143447
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/144736
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148426
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148425

The post IBM Security Bulletin: Node.js as used in IBM QRadar Packet Capture is susceptible to multiple vulnerabilities appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2z7uwk7