Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM SmartCloud Entry (CVE-2016-0475 CVE-2016-0448 CVE-2015-7575 CVE-2016-0466)

   
Affected software IBM
 
There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 6.0.16.15 and Version 7.0.9.20 these are used by IBM SmartCloud Entry. These issues were disclosed as part of the IBM Java SDK updates in January 2016 and includes the vulnerability commonly referred to as “SLOTH”. CVE(s): CVE-2016-0475, CVE-2016-0466, CVE-2015-7575 and CVE-2016-0448Affected product(s) and affected version(s):IBM Cloud Manager with OpenStack 4.1.0 through 4.1.0.5 IBM Cloud

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_java_sdk_affect_ibm_smartcloud_entry_cve_2016_0475_cve_2016_0448_cve_2015_7575_cve_2016_0466?lang=en_us