IBM Updates
3188Warning Date
Severity Level
Warning Number
Target Sector
3 October, 2019
● High
2019-483
All
Description:
IBM has released security updates to address vulnerabilities in the following products:
- LCM8 & LCM16 KVM Switch Firmware
- GCM16 & GCM32 KVM Switch Firmware
- Rational Functional Tester: 8.6.0 – 9.5
- IBM Security Directory Server 6.4.0
- IBM Cloud Private for Data V1.1.0, V1.2.0, V1.2.1, V2.1.0
- IBM Security Access Manager Appliance 8.0, 9.0
- IBM Security Guardium 9.0 - 9.5, 10.0 – 10.6
- Liberty 9.0, 8.5, 8.0, 7.0
- IBM Cúram Social Program Management 7.0.5.0 – 7.0.7.0 IBM Cúram Social Program Management 7.0.0.0 – 7.0.4.3
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Unauthorized disclosure of information remotely.
- Denial of service attack (DoS) – remotely.
- Unauthorized modification.
- Escalation of privilege.
- Execute arbitrary code.
- Application crash.
Best practice and Recommendations:
The CERT team encourages users to review IBM security advisory and apply the necessary updates: https://www.ibm.com/blogs/psirt/