High Severity

IBM Security Bulletin: IBM MessageSight is affected by the following four IBM Java vulnerabilities

Share this post:

IBM MessageSight has addressed the following Java vulnerabilities: CVE-2018-12549: Eclipse OpenJ9 could allow a remote attacker to execute arbitrary code on the system. CVE-2018-12547: Eclipse OpenJ9 is vulnerable to a buffer overflow, caused by improper bounds checking by the jio_snprintf() and jio_vsnprintf() functions. CVE-2019-2422: An unspecified vulnerability in Oracle Java SE related to the Java SE Libraries component. CVE-2019-2426: Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Networking) CVE-2019-2449: An unspecified vulnerability in Oracle Java SE related to the Java SE Deployment component.

CVE(s): CVE-2018-12549, CVE-2018-12547, CVE-2019-2422, CVE-2019-2449

Affected product(s) and affected version(s):

Affected IBM MessageSight Affected Versions
IBM MessageSight 1.2.0.0 – 1.2.0.3
IBM MessageSight 2.0.0.0 – 2.0.0.2
IBM MessageSight 5.0.0.0
IBM MessageSight 5.0.0.1

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10878518
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/157513
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/157512
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/155741
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/155766

More stories

IBM Security Bulletin: Multiple Vulnerabilities in IBM Java Runtime affect IBM Cloud Private

Oct 15, 2019 9:03 am EDT | High Severity

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Version 8 used by IBM Cloud Private. IBM Cloud Private has addressed the applicable CVEs. CVE(s): CVE-2019-2766, CVE-2019-2786, CVE-2019-2816, CVE-2019-2762, CVE-2019-2769, CVE-2019-4473 Affected product(s) and affected version(s): IBM Cloud Private 3.1.0, 3.1.1, 3.1.2, 3.2.0 Refer to the following reference URLs for remediation and additional vulnerability details:Source ...read more


IBM Security Bulletin: IBM Security Guardium is affected by an Oracle MySQL vulnerabilities

Oct 15, 2019 9:02 am EDT | High Severity

IBM Security Guardium has addressed the following vulnerabilities. CVE(s): CVE-2019-2789, CVE-2019-2784, CVE-2019-2740, CVE-2019-2785, CVE-2019-2741, CVE-2019-2780, CVE-2019-2819, CVE-2019-2814, CVE-2019-2737, CVE-2019-2758, CVE-2019-2879, CVE-2019-2739, CVE-2019-2815, CVE-2019-2738, CVE-2019-2755, CVE-2019-2810, CVE-2019-2798, CVE-2019-2757, CVE-2019-2834, CVE-2019-2812, CVE-2019-2778, CVE-2019-2811, CVE-2019-2795, CVE-2019-2830, CVE-2019-2797, CVE-2019-2796, CVE-2019-2752, CVE-2019-2774, CVE-2019-2730, CVE-2019-2791, CVE-2019-2808, CVE-2019-2803, CVE-2019-2802, CVE-2019-2805, CVE-2019-2826, CVE-2019-2801, CVE-2019-2800, CVE-2019-2822 Affected product(s) and affected version(s): Affected IBM Security ...read more


IBM Security Bulletin: IBM MQ Appliance is affected by kernel vulnerabilities (CVE-2019-11479, CVE-2019-11478 and CVE-2019-11477)

Oct 15, 2019 9:02 am EDT | High Severity

IBM MQ Appliance has addressed the following kernel vulnerabilities. CVE(s): CVE-2019-11479, CVE-2019-11478, CVE-2019-11477 Affected product(s) and affected version(s): IBM MQ Appliance 9.1 Long Term Support (LTS) Release Maintenance levels between 9.1.0.0 and 9.1.0.3 IBM MQ Appliance 9.1.x Continuous Delivery (CD) Release Continuous delivery updates 9.1.1 and 9.1.3 Refer to the following reference URLs for remediation ...read more