Critical Severity
Security Bulletin: Vulnerability in PyYAML affects IBM Spectrum Protect Plus Container and Microsoft File Systems Agents (CVE-2020-1747)
Dec 2, 2020 7:00 pm EST
Categorized: Critical Severity
Share this post:
There is a vulnerability in PyYAML that could allow a remote attacker to execute arbitrary code on the system. This vulnerability may affect the IBM Spectrum Protect Plus Container agent for Kubernetes and OpenShift and the IBM Spectrum Protect Plus Microsoft® Windows File Systems agent.
Affected product(s) and affected version(s):
Affected Product(s) | Version(s) |
IBM Spectrum Protect Plus Container Agent for Kubernetes and OpenShift | 10.1.5-10.1.6 |
IBM Spectrum Protect Plus Microsoft File Systems Agent | 10.1.6 |
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www.ibm.com/support/pages/node/6376724
Security Bulletin: Vulnerability in Apache Solr affecting Watson Knowledge Catalog for IBM Cloud Pak for Data
Jan 14, 2021 7:00 pm EST | Critical Severity
There is a missing authorization vulnerability in the Apache Solr service that is distributed as part of Watson Knowledge Catalog for IBM Cloud Pak for Data. The issue is now addressed. ...read more
Security Bulletin: A vulnerability was identified and remediated in the IBM MaaS360 Cloud Extender (CVE-2020-15358)
Jan 13, 2021 7:01 pm EST | Critical Severity
A vulnerability was identified and remediated in the IBM MaaS360 Cloud Extender ...read more
Security Bulletin: Vulnerabilities in Node.js affect IBM App Connect Enterprise and IBM Integration Bus (CVE-2020-7769)
Jan 13, 2021 7:01 pm EST | Critical Severity
IBM App Connect Enterprise and IBM Integration Bus ship with Node.js for which vulnerabilities were reported and have been addressed. Vulnerability details are listed below. ...read more