Lucene search

K
ibmIBM404E16145F06A4BE0D7DEB3115082BE0837BBFA99AF5D82A265F89B78F61F4DD
HistoryJun 16, 2018 - 10:00 p.m.

Security Bulletin: multiple vulnerabilities in IBM® SDK Java™ Technology Edition affect IBM Security Guardium Data Redaction. .

2018-06-1622:00:14
www.ibm.com
8

0.001 Low

EPSS

Percentile

42.9%

Summary

There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 6 used by IBM Security Guardium Data Redaction. IBM Security Guardium Data Redactionaddressed the applicable CVEs

Vulnerability Details

CVEID: CVE-2017-3511**
DESCRIPTION:** An unspecified vulnerability in Oracle Java SE related to the Java SE, Java SE Embedded, JRockit JCE component could allow an unauthenticated attacker to take control of the system.
CVSS Base Score: 7.7
CVSS Temporal Score: See https://exchange.xforce.ibmcloud.com/vulnerabilities/124890 for the current score
CVSS Environmental Score*: Undefined
CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H)

Affected Products and Versions

IBM Security Guardium Data Redaction V2.5.1

Remediation/Fixes

<Product

| VRMF| Remediation/First Fix
—|—|—
IBM Security Guardium Data Redaction| 2.5.1| http://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=All&platform=All&function=fixId&fixids=Guardium_DataRedaction_2.5.1_SecurityUpdate_2017-05-11&includeSupersedes=0&source=fc

Workarounds and Mitigations

No