IBM Security Bulletin: IBM MQ Appliance is affected by glibc vulnerabilities
Jan 4, 2019 9:01 am EST
Categorized: High Severity
Share this post:
IBM MQ Appliance has addressed the following glibc vulnerabilities.
CVE(s): CVE-2017-15804, CVE-2017-15670, CVE-2017-12132, CVE-2015-5180
Affected product(s) and affected version(s):
IBM MQ Appliance 8.0
Maintenance levels between 8.0.0.0 and 8.0.0.10
IBM MQ Appliance 9.0.x Continuous Delivery (CD) Release
Continuous delivery updates 9.0.1 and 9.0.5
IBM MQ Appliance 9.1 Long Term Support (LTS) Release
Maintenance level 9.1.0.0
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10734965
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133996
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133915
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/129949
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/130620
from IBM Product Security Incident Response Team https://ibm.co/2F630qG