IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect API Connect
Dec 21, 2018 9:00 am EST
Categorized: High Severity
Share this post:
There are multiple vulnerabilities in IBM® Runtime Environment Java™ used by IBM API Connect. These issues were disclosed as part of the IBM Java SDK updates in July 2018.
CVE(s): CVE-2018-2952, CVE-2018-1517, CVE-2018-1656
Affected product(s) and affected version(s):
IBM API Connect V5.0.0.0 – V5.0.8.4
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10787583
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/146815
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141681
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/144882
from IBM Product Security Incident Response Team https://ibm.co/2QGuYjQ