Lucene search

K
ibmIBM42384574F7E0521A92FB391AC5F0C9B49CC1F4E98A72FCE20FF6CB01E05DAF9B
HistoryNov 13, 2020 - 6:45 p.m.

Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM InfoSphere Identity Insight (CVE-2020-2754, CVE-2020-2755)

2020-11-1318:45:46
www.ibm.com
22

0.004 Low

EPSS

Percentile

72.2%

Summary

An unspecified vulnerability in Java SE related to the Java SE Scripting component used by IBM InfoSphere Identity Insight could allow an unauthenticated attacker to cause a denial of service resulting in a low availability impact using unknown attack vectors.

Vulnerability Details

Refer to the security bulletin(s) listed in the Remediation/Fixes section

Affected Products and Versions

Affected Product(s) Version(s)
IBM InfoSphere Identity Insight 9.0

Remediation/Fixes

Per original bulletin, apply IBM SDK Java Technology Edition, Version 8 Service Refresh 6 (8.0.6.10 or later), as available from IBM Fix Central. IBM recommends installing the latest Version 8 Service Refresh 6 release.

Workarounds and Mitigations

None

CPENameOperatorVersion
infosphere identity insighteq9.0