Security Bulletin: Multiple Vulnerabilities in CloudPak for Watson AIOPs
## Summary
Multiple vulnerabilities were fixed in IBM Cloud Pak for Watson AIOps version 3.6.
## Vulnerability Details
** CVEID: **[CVE-2018-8023]()
** DESCRIPTION: **Apache Mesos could allow a remote ...
Continue Reading
December 14, 2022
Veeam Backup & Replication Remote Code Execution Vulnerability
The Veeam Distribution Service in the Backup & Replication application allows unauthenticated users to access internal API functions. A remote attacker can send input to the internal API which ...
Continue Reading
December 13, 2022
Security Bulletin: Multiple vulnerabilities have been identified in Smack API shipped with IBM Tivoli Netcool Impact (CVE-2014-0363, CVE-2014-0364)
## Summary
Smack API is used by IBM Tivoli Netcool Impact as part of the Jabber service component. IBM Tivoli Netcool Impact has addressed the applicable CVEs.
## Vulnerability Details
** CVEID: **[CV ...
Continue Reading
December 13, 2022
Security Bulletin: Multiple vulnerabilities have been identified in IBM WebSphere Application Server Liberty shipped with IBM Tivoli Netcool Impact (CVE-2022-24839, CVE-2022-37734, CVE-2022-34165)
## Summary
IBM WebSphere Application Server Liberty is shipped with IBM Tivoli Netcool Impact as part of its server infrastructure. IBM Tivoli Netcool Impact has addressed the applicable CVEs.
## Vuln ...
Continue Reading
December 12, 2022
Security Bulletin: Multiple vulnerabilities affect IBM Db2® on Cloud Pak for Data and Db2 Warehouse® on Cloud Pak for Data
## Summary
IBM has released the below fix for IBM Db2® on Cloud Pak for Data and Db2 Warehouse® on Cloud Pak for Data in response to multiple vulnerabilities found in multiple components.
## Vul ...
Continue Reading
November 30, 2022
(RHSA-2022:8634) Moderate: OpenShift API for Data Protection (OADP) 1.1.1 security and bug fix update
OpenShift API for Data Protection (OADP) enables you to back up and restore application resources, persistent volume data, and internal container images to external backup storage. OADP enables both f ...
Continue Reading
November 27, 2022
Security Bulletin: A vulnerability in IBM Java Runtime affects IBM ILOG CPLEX Optimization Studio (CVE-2021-28167)
## Summary
There is a vulnerability in IBM® Runtime Environment Java⢠Version 8 used by IBM CPLEX Optimization Studio. IBM CPLEX Optimization Studio has addressed the applicable CVE.
## Vulner ...
Continue Reading
November 24, 2022
Security Bulletin: Vulnerability in IBM Java SDK affects Cloud Pak System [CVE-2021-28167]
## Summary
Vulnerability in IBM Java SDK affects OS Image for Red Hat Linux Systems shipped with Cloud Pak System. Cloud Pak System has addressed vulnerability. [CVE-2021-28167]
## Vulnerability Detai ...
Continue Reading
November 23, 2022
grafana security, bug fix, and enhancement update
[7.5.15-3]
- resolve CVE-2022-1962 golang: go/parser: stack exhaustion in all Parse* functions
- resolve CVE-2022-1705 golang: net/https: improper sanitization of Transfer-Encoding header
- resolve CVE ...
Continue Reading
November 22, 2022
php security, bug fix, and enhancement update
[8.0.20-3]
- snmp3 calls using authPriv or authNoPriv immediately return false #2104630
[8.0.20-2]
- fix patch41 not applied (use system nikic/php-parser when available)
[8.0.20-1]
- rebase to 8.0.20 ...
Continue Reading
November 22, 2022