Lucene search

K
ibmIBM9CD14117A91708D3923BD78C3B0E27E442D14B8976544CB69E7166B29DBCC7C9
HistoryJun 15, 2018 - 10:42 p.m.

Security Bulletin: A security vulnerability in IBM Java Runtime affects IBM Cognos Planning (CVE-2016-3427)

2018-06-1522:42:09
www.ibm.com
22

0.49 Medium

EPSS

Percentile

97.5%

Summary

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Version 6 that is used by IBM Cognos Planning. These issues were disclosed as part of the IBM Java SDK updates in April 2016.

Vulnerability Details

CVEID: CVE-2016-3427** *DESCRIPTION: An unspecified vulnerability related to the JMX component has complete confidentiality impact, complete integrity impact, and complete availability impact.
CVSS Base Score: 10
CVSS Temporal Score: See https://exchange.xforce.ibmcloud.com/vulnerabilities/112459 for the current score
CVSS Environmental Score
: Undefined
CVSS Vector: (AV:N/AC:L/Au:N/C:C/I:C/A:C)

Affected Products and Versions

IBM Cognos Planning 10.1

IBM Cognos Planning 10.1.1

Remediation/Fixes

Please apply fixes available at:

IBM Cognos Planning 10.1.1.7 Interim Fix 2

IBM Cognos Planning 10.1.0 Interim Fix 8