Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect WebSphere Message Broker and IBM Integration Bus

   
Affected software IBM
 
Multiple security vulnerabilities exist in the IBM® Runtime Environment Java™ Technology Edition 6.0.16.16 (and earlier) used by WebSphere Message Broker and the IBM® Runtime Environment Java™ Technology Edition 7.0.9.20 (and earlier) or 7.1.3.20 (and earlier) used by IBM Integration Bus. These issues were disclosed as part of the IBM Java SDK updates in January 2016 and includes the vulnerability commonly referred to as “SLOTH”. CVE(s): CVE-2016-0494,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_java_runtime_affect_websphere_message_broker_and_ibm_integration_bus1?lang=en_us