IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect the IBM Spectrum Protect Server (CVE-2018-1656, CVE-2018-12539)
Dec 6, 2018 9:01 am EST
Categorized: High Severity
Share this post:
There are multiple vulnerabilities in IBM® Runtime Environment Java™ used by the IBM Spectrum Protect (formerly Tivoli Storage Manager) Server. These issues were disclosed as part of the IBM Java SDK updates in July 2018.
CVE(s): CVE-2018-1656, CVE-2018-12539
Affected product(s) and affected version(s):
These vulnerabilities affect the following IBM Spectrum Protect (formerly Tivoli Storage Manager) Server levels:
- 8.1.0.0 through 8.1.6.0
- 7.1.0.0 through 7.1.9.0
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10743193
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/144882
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148389
from IBM Product Security Incident Response Team https://ift.tt/2REk8aL