IBM Updates
3786Warning Date
Severity Level
Warning Number
Target Sector
25 August, 2019
● High
2019-371
All
Description:
IBM has released security updates to address vulnerabilities in the following products:
- DB2 Recovery Expert for LUW.
- P9 OpenPOWER releases OP910 and OP920 are affected.
- IBM Security Access Manager for Enterprise Single-Sign On 8.2.2.
- IBM WebSphere Application Server for IBM Cloud Private VM Quickstarter 2.0, 3.0.
- IBM Cloud Automation Manager 3.1.2.
- IBM i 7.4 with Db2 Mirror for i might be affected.
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Unauthorized modification.
- Denial of service attack (DoS).
- Unauthorized disclosure of information.
- Execute arbitrary code-remotely.
Best practice and Recommendations:
The CERT team encourages users to review IBM security advisory and apply the necessary updates: