IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM Security Directory Server

Dec 13, 2018 9:00 am EST

Categorized: High Severity

Share this post:

There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 6 and Version 8 used by IBM Security Directory Server (SDS). These issues were disclosed as part of the IBM Java SDK updates in April 2018, January 2018, October 2017, July 2017, and January 2017.

CVE(s): CVE-2018-2800, CVE-2018-2783, CVE-2018-2794, CVE-2018-2579, CVE-2018-2602, CVE-2018-2603, CVE-2018-2634, CVE-2018-2633, CVE-2017-10345, CVE-2017-10295, CVE-2017-10281, CVE-2017-10350, CVE-2017-10347, CVE-2017-10349, CVE-2017-10348, CVE-2017-10357, CVE-2017-10355, CVE-2016-9841, CVE-2017-10293, CVE-2017-10356, CVE-2017-10274, CVE-2017-10309, CVE-2017-10388, CVE-2017-10285, CVE-2017-10346, CVE-2016-9843, CVE-2016-9842, CVE-2016-9840, CVE-2016-10165, CVE-2017-10198, CVE-2017-10125, CVE-2017-10067, CVE-2017-10115, CVE-2017-10118, CVE-2017-10176, CVE-2017-10078, CVE-2017-10074, CVE-2017-10090, CVE-2017-10096, CVE-2017-10101, CVE-2017-10116, CVE-2017-10102, CVE-2017-10087, CVE-2017-10089, CVE-2017-10107, CVE-2017-10110, CVE-2017-10111, CVE-2017-1376, CVE-2017-10193, CVE-2017-10081, CVE-2017-10105, CVE-2017-10053, CVE-2017-10108, CVE-2017-10109, CVE-2017-10135, CVE-2017-10243, CVE-2016-5546, CVE-2016-5548, CVE-2016-5549, CVE-2016-5547, CVE-2016-2183

Affected product(s) and affected version(s):

ProductVersion
IBM Tivoli Directory Server6.2 – 6.2.0.55, 6.3 – 6.3.0.48
IBM Security Directory Server6.3.1 – 6.3.1.23, 6.4 – 6.4.0.15

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10718843
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141956
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141939
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141950
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137833
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137854
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137855
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137886
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/137885
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133774
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133729
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133720
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133779
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133776
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133778
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133777
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133786
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133784
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120509
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133727
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133785
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133714
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133738
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133813
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133723
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133775
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120511
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120510
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120508
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/127028
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128937
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128885
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128831
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128876
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128879
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128918
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128840
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128837
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128852
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128858
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128862
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128877
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128863
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128849
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128851
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128868
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128871
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128872
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/126873
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128934
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128843
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128866
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128822
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128869
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128870
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128894
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/128980
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120869
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120864
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120863
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/120871
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/116337



from IBM Product Security Incident Response Team https://ift.tt/2S2MBHv