Medium Severity

Security Bulletin: Multiple Vulnerabilities in IBM Java SDK have been adressed in IBM Cloud Pak System – July 2020 (CVE-2020-2601, CVE-2020-2590)

Share this post:

Multiple vulnerabilities reported in IBM Java SDK shipped with Cloud Pak System. These issues were disclosed as part of the IBM Java SDK updates in July 2020. Cloud Pak System addressed vulnerabilities including CVE-2020-2601 , CVE-2020-2590. It applies to Cloud Pak System, Cloud Pak System Software  and Cloud Pak System Software Suite .

CVE(s): CVE-2020-14583 , CVE-2020-14593 , CVE-2020-14621 , CVE-2020-14556 , CVE-2020-14581, CVE-2020-14579 , CVE-2020-14578 , CVE-2020-14577 , CVE-2019-17639, CVE-2020-2590 , CVE-2020-2601

Affected product(s) and affected version(s):

Affected Product(s) Version(s)
IBM Cloud Pak System

V2.3

IBM OS Image for Red Hat Linux Systems ALL

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6359011
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185061
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185071
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185099
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185034
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185059
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185057
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185056
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185055
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/185437
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/174538
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/174548

More stories

Security Bulletin: IBM Watson Discovery for IBM Cloud Pak for Data affected by vulnerability in Spring

Feb 27, 2021 7:00 pm EST | Medium Severity

IBM Watson Discovery for IBM Cloud Pak for Data contains a vulnerable version of Spring. ...read more


Security Bulletin: IBM Watson Discovery for IBM Cloud Pak for Data affected by vulnerability in Python

Feb 27, 2021 7:00 pm EST | Medium Severity

IBM Watson Discovery for IBM Cloud Pak for Data contains a vulnerable version of Python. ...read more


Security Bulletin: IBM Watson Discovery for IBM Cloud Pak for Data affected by vulnerability in Java

Feb 27, 2021 7:00 pm EST | Medium Severity

IBM Watson Discovery for IBM Cloud Pak for Data contains a vulnerable version of Java. ...read more