Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in IBM® SDK, Java™ Technology Edition affect IBM Operational Decision Manager, WebSphere ILOG JRules and WebSphere Business Events:

   
Affected software IBM
 
There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 6,7 and 8 that is used by IBM Operational Decision Manager (ODM), IBM ILOG JRules and IBM WebSphere Business Events (WBE). These issues were disclosed as part of the IBM Java SDK updates in January 2016 and includes the vulnerability commonly referred to as “SLOTH”. CVE(s): CVE-2015-8472, CVE-2016-0402, CVE-2015-7575, CVE-2016-0448, CVE-2015-5041, CVE-2015-7981, CVE-2015-8540 and

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_sdk_java_technology_edition_affect_ibm_operational_decision_manager_websphere_ilog_jrules_and_websphere_business_events1?lang=en_us