IBM Security Bulletins: There is a security vulnerability in the XLXP-C component which is shipped in IBM Integration Bus and App Connect Enterprise (CVE-2018-1801)

Feb 1, 2019 9:01 am EST

Categorized: Medium Severity

Share this post:

There is a security vulnerability in the XLXP-C component which is shipped in IBM Integration Bus and App Connect Enterprise. A successful exploitation of the vulnerability could lead to a denial of service attack.

CVE(s): CVE-2018-1801

Affected product(s) and affected version(s):

IBM App Connect V11.0.0.0 – V11.0.0.1

IBM Integration Bus V10.0.0.0 -V10.0.0.13

IBM Integration Bus V9.0.0.0 – V9.0.0.10

WebSphere Message Broker V8.0.0.0 -V8.0.0.9

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10795780
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/149639



from IBM Product Security Incident Response Team https://ibm.co/2RxjYkC