Lucene search

K
ibmIBM81AFE7A7E77FBF67E0FB38B33E6D43C83FAC543F760A4776D75FC9D2F390DF30
HistoryMay 06, 2020 - 8:07 p.m.

Security Bulletin: A vulnerability in IBM Java Runtime affects IBM SPSS Statistics Subscription

2020-05-0620:07:37
www.ibm.com
22

0.004 Low

EPSS

Percentile

73.5%

Summary

There is a vulnerability in IBM® Runtime Environment Java™ Versions 7.0, 7.1, and 8.0 used by IBM SPSS Statistics. IBM SPSS Statistics has addressed the applicable CVE.

Vulnerability Details

CVEID:CVE-2019-2989
**DESCRIPTION:**An unspecified vulnerability in Java SE could allow an unauthenticated attacker to cause no confidentiality impact, high integrity impact, and no availability impact.
CVSS Base score: 6.8
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/169295 for the current score.
CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N)

Affected Products and Versions

Affected Products Version(s)
SPSS Statistics Subscription 1.0

Remediation/Fixes

Affected Products Version(s) Fixes
SPSS Statistics Subscription 1.0 Install StatsSubOct2019CPU-IF

Workarounds and Mitigations

None