High Severity

Security Bulletin: IBM Cloud Pak for Multicloud Management has applied security fixes for its use of Apache Commons

Share this post:

IBM Cloud Pak for Multicloud Management has applied security fixes for its use of Apache Commons.

CVE(s): CVE-2020-1953

Affected product(s) and affected version(s):

Affected Product(s) Version(s)
IBM Cloud Pak for Multicloud Management Monitoring before 2.3 Fix Pack 2

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6520780
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/177759

More stories

Security Bulletin: IBM MQ Operator and IBM supplied MQ Advanced container images are vulnerable to multiple issues from Red Hat UBI packages and the IBM WebSphere Application Server Liberty

May 16, 2022 | High Severity

Multiple issues were identified in Red Hat UBI(ubi8/ubi-minimal) v8.5-x packages that were shipped with IBM MQ Operator and IBM supplied MQ Advanced container images. We have also identified an issue in the IBM WebSphere Application Server Liberty component that is packaged with IBM supplied MQ Advanced container images. ...read more


Security Bulletin: IBM Security Identity Governance and Intelligence is vulnerable to arbitrary code execution due to Apache Log4j (CVE-2021-4104)

May 16, 2022 | High Severity

IBM Security Identity Governance and Intelligence (ISIGI) is vulnerable to arbitrary code execution due to Apache Log4j (CVE-2021-4104). Apache Log4j is used as part of ISIGI's logging infrastructure. The fix includes Apache Log4j version 2.17.1. ...read more


Security Bulletin: IBM Security Verify Governance is vulnerable to arbitrary code execution due to Apache Log4j (CVE-2021-4104)

May 16, 2022 | High Severity

IBM Security Verify Governance (ISVG) is vulnerable to arbitrary code execution due to Apache Log4j CVE-2021-4104. Apache Log4j is used as part of ISVG's logging infrastructure. The fix includes Apache Log4j version 2.17.1. ...read more