IBM Security Bulletin: IBM has announced a release for IBM Security Identity Governance and Intelligence in response to multiple security vulnerabilities (CVE-2019-3855, CVE-2019-3856, CVE-2019-3857, CVE-2019-3863)
IBM has announced a release for IBM Security Identity Governance and Intelligence (IGI) in response to address multiple security vulnerabilities. The libssh2 packages that implement the SSH2 protocol is affected by four vulnerabilities.
CVE(s): CVE-2019-3855, CVE-2019-3856, CVE-2019-3857, CVE-2019-3863
Affected product(s) and affected version(s):
IBM Security Identity Governance and Intelligence (IGI) 5.2, 5.2.1, 5.2.2, 5.2.2.1, 5.2.3, 5.2.3.1, 5.2.3.2;
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10958843
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/158339
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/158340
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/158341
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/158347
The post IBM Security Bulletin: IBM has announced a release for IBM Security Identity Governance and Intelligence in response to multiple security vulnerabilities (CVE-2019-3855, CVE-2019-3856, CVE-2019-3857, CVE-2019-3863) appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ift.tt/2Gq7yYR