Your review has been sent successfully

IBM Updates

2177
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

10 December, 2020

● High

2020-2182

All

Description:

IBM has released security updates to address multiple vulnerabilities in the following products:

  • ICP – Discovery
    • 2.0.0-2.1.4
  • IBM Sterling B2B Integrator
    • 6.0.0.0 – 6.0.3.1
    • 5.2.0.0 – 5.2.6.5_1
  • WA for ICP
    • 1.4.0, 1.4.1, 1.4.2
  • AIX
    • 7.1.5
    • 7.1.4
    • 7.1.3
  • Node.js™ in IBM Cloud
  • IBM App Connect
    • V11.0.0.0 – V11.0.0.8
  • IBM Integration Bus
    • V10.0.0.0 -V10.0.0.21
    • V9.0.0.0 – V9.0.0.11
  • ICP – Discovery
    • 2.0.0-2.1.4
  • InfoSphere Master Data Management
    • 11.6
  • VIOS
    • 3.1
  • IBM Aspera High-Speed Transfer Server
    • 3.9.6.2 and earlier
  • IBM Aspera High-Speed Transfer Endpoint
    • 3.9.6.2 and earlier
  • IBM App connect Enterprise
    • V11 , V11.0.0.0 – V11.0.0.10
  • IBM Sterling File Gateway
    • 2.2.0.0 – 6.0.3.2
  • Liberty for Java
    • 3.49
  • IBM® Db2®

Threats:

An attacker could exploit these vulnerabilities by doing the following:

  • Sensitive information disclosure
  • Execute arbitrary code
  • Denial of service attack (DoS)
  • Escalation of privilege

Best practice and Recommendations:

The CERT team encourages users to review IBM security advisory and apply the necessary updates:

Last updated at 10 December, 2020

Rate the content

rate-icon
up icon