Lucene search

K
ibmIBMB35331C8976936545073B60350455C602E3A6DA9E2C52BDF202502219C50D240
HistoryOct 28, 2020 - 5:16 p.m.

Security Bulletin: IBM Security QRadar Packet Capture has released 7.3.1 Patch 1, and 7.2.8 Patch 4 in response to the vulnerabilities known as Spectre and Meltdown.

2020-10-2817:16:55
www.ibm.com
28

EPSS

0.976

Percentile

100.0%

Summary

IBM has released the following 7.3.1 Patch 1, and 7.2.8 Patch 4 for IBM QRadar Packet Capture in response to CVE-2017-5753, CVE-2017-5715 and CVE-2017-5754.

Vulnerability Details

CVEID: CVE-2017-5753

CVEID: CVE-2017-5715

CVEID: CVE-2017-5754

Affected Products and Versions

IBM QRadar Packet Capture 7.3.0 – 7.3.1 GA
IBM QRadar Packet Capture 7.2.0 – 7.2.8.Patch 3

Remediation/Fixes

QRadar Packet Capture 7.3.1 Patch 1
QRadar Packet Capture 7.2.8 Patch 4

Workarounds and Mitigations

Please note in order to mitigate CVE-2017-5715 Spectre Variant #2, microcode will need to be updated on all appliances along with the Kernel update that is included in the QRadar Packet Capture Patch. Please see the links below for available microcode updates.

For Lenovo Appliance Firmware, see:
Lenovo x3650 M4 USB
Lenovo x3650 M4 ISO

For Dell Appliances, see:
For Dell R710 appliances select your Operating System and Download Version 6.5.0 BIOS