Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM SPSS Analytic Server (CVE-2015-4872, CVE-2015-4734 , CVE-2015-5006, CVE-2015-7575)

   
Affected software IBM
 
There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition, Versions 1.6 and 1.7 that is used by IBM SPSS Analytic Server. These issues were disclosed as part of the IBM Java SDK updates in October 2015 and includes the vulnerability commonly referred to as “SLOTH”. CVE(s): CVE-2015-4872, CVE-2015-4734, CVE-2015-5006 and CVE-2015-7575Affected product(s) and affected version(s): IBM SPSS Analytic Server 1.0.1.0 IBM SPSS Analytic Server 2.0.0.0

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_java_runtime_affect_ibm_spss_analytic_server_cve_2015_4872_cve_2015_4734_cve_2015_5006_cve_2015_7575?lang=en_us