Vulnerability Bulletins

IBM Security Bulletin: "SLOTH" vulnerability in IBM Java SDK affects InfoSphere Streams (CVE-2015-7575)

   
Affected software IBM
 
There is a vulnerability in IBM® SDK Java™ Technology Edition, Versions 7R1 Service Refresh 3 Fix Pack 1 and earlier releases and Version 8 Service Refresh 1 Fix Pack 1 and earlier releases that is used by IBM® InfoSphere Streams. This vulnerability, commonly referred to as SLOTH, was disclosed as part of the IBM® Java™ SDK updates in January 2016. CVE(s): CVE-2015-7575Affected product(s) and affected version(s): 1.2.1.0 2.0.0.4 and earlier 3.0.0.5 and earlier

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_sloth_vulnerability_in_ibm_java_sdk_affects_infosphere_streams_cve_2015_7575?lang=en_us