IBM Updates
3122Warning Date
Severity Level
Warning Number
Target Sector
16 October, 2019
● High
2019-528
All
Description:
IBM has released security updates to address vulnerabilities in the following products:
- Tivoli Workload Scheduler Distributed 9.2.0 FP03 and earlier
- IBM Workload Scheduler Distributed 9.3.0 FP03 and earlier
- IBM Workload Scheduler Distributed 9.4.0 FP05 and earlier IBM Workload Scheduler Distributed 9.5.0 GA
- IBM Security Guardium Big Data Intelligence 1.0
- IBM MQ Appliance 9.1.x Continuous Delivery (CD) Release Continuous delivery updates 9.1.1 and 9.1.3
- IBM Security Guardium 9.0 – 9.5 #م7: IBM MQ Appliance 9.1 Long Term Support (LTS) Release Maintenance levels between 9.1.0.0 and 9.1.0.3
- IBM Cloud Private 3.1.0, 3.1.1, 3.1.2, 3.2.0
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Escalation of privilege.
- Unauthorized disclosure of information.
- Execute arbitrary code-remotely.
- Denial of service attack (DoS).
Best practice and Recommendations:
The CERT team encourages users to review IBM security advisory and apply the necessary updates: https://www.ibm.com/blogs/psirt/