IBM Updates
2919Warning Date
Severity Level
Warning Number
Target Sector
25 November, 2019
● High
2019-652
All
Description:
IBM has released security updates to address vulnerabilities in the following products:
- IBM Spectrum Protect
- Log Analysis
- IBM Tivoli Netcool
- IBM Cognos Controller
- IBM Cloud Pak System
- Tivoli Netcool/OMNIbus
- Transformation Extender
- IBM QRadar
- IBM Tivoli Federated Identity Manager
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Denial of Service (DoS)
- Privilege elevation
- Man-in-the-middle attack
- Information disclosure
- Cross-site scripting (XSS)
- Obtain sensitive information
- Corrupt memory
- Code Injection
Best practice and Recommendations:
The CERT team encourages users to review IBM security advisory and apply the necessary updates: