IBM Updates
2825Warning Date
Severity Level
Warning Number
Target Sector
29 May, 2020
● Medium
2020-1291
All
Description:
IBM has released security updates to address multiple vulnerabilities in the following products:
- IBM Security Identity Governance and Intelligence
- 5.2.6
- 5.2
- 5.2.3
- 5.2.4
- 5.2.5
- IBM Jazz Reporting Service
- 7.0
- 6.0.6.1
- 6.0.6
- CICS Transaction Gateway
- v9.1.0.0 – 9.1.0.3
- v9.2.0.0 – 9.2.0.2
- IBM Planning Analytics
- 2.0.0 – 2.0.9
- IBM MQ for HPE NonStop
- 8.1.0
- 8.0.4
- IBM Security SiteProtector System
- 3.0.0
- 3.1.1
- IBM Business Automation Workflow
- V19.0
- V18.0
- IBM Business Process Manager
- V8.6
- V8.5
- V8.0
- SPSS Statistics
- 26.0
- 25.0
- 24.0
- 23.0
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Denial of service attack (DoS) - remotely.
- Obtain sensitive information.
- Execute arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review IBM security advisory and apply the necessary updates: