Critical Severity

Security Bulletin: RabbitMQ as used by IBM QRadar SIEM is vulnerable to unsafe deserialization (CVE-2020-36282)

Share this post:

RabbitMQ as used by IBM QRadar SIEM is vulnerable to unsafe deserialization

CVE(s): CVE-2020-36282

Affected product(s) and affected version(s):

7.3

All PROTOCOL-RabbitMQ versions before 7.3.0-QRADAR-PROTOCOL-RabbitMQ-7.3-20210505121416.noarch.rpm 

7.4

All PROTOCOL-RabbitMQ versions before 7.4.0-QRADAR-PROTOCOL-RabbitMQ-7.4-20210505121348.noarch.rpm 

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6464851
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/198142

More stories

Security Bulletin: A security vulnerability in Ruby on Rails affects IBM Cloud Pak for Multicloud Management Infrastructure Management

Jul 26, 2021 8:00 pm EDT | Critical Severity

A security vulnerability in Ruby on Rails affects IBM Cloud Pak for Multicloud Management Infrastructure Management. ...read more


Security Bulletin: IBM App Connect Enterprise v11 is affected by vulnerabilities in Node.js (CVE-2021-23358)

Jul 19, 2021 8:05 pm EDT | Critical Severity

IBM App Connect Enterprise v11 ships with Node.js for which vulnerabilities were reported and have been addressed. Vulnerability details are listed below. ...read more


Security Bulletin: IBM Security SOAR is using a component with known vulnerabilities – Handlebars.js ( CVE-2019-19919, CVE-2021-32820)

Jul 16, 2021 8:02 pm EDT | Critical Severity

The product includes an older version of Handlebars.js that may be identified and exploited with automated tools. ...read more