Number: AV22-059
Date: 7 February 2022

Between 31 January and 6 February 2022 IBM published Security Bulletins to address vulnerabilities in multiple products. Included were critical updates for the following:

  • IBM – Apache Log4j Vulnerability – multiple versions and platforms
  • IBM Planning Analytics – version 2.0
  • IBM Planning Analytics Workspace – version 2.0
  • IBM Security Verify Access Appliance – versions 10.0.0, 10.0.1 and 10.0.2
  • IBM Security Verify Access Docker – versions 10.0.0, 10.0.1 and 10.0.2
  • IBM Spectrum Protect Plus Container Backup and Restore for Kubernetes – versions 10.1.5 to 10.1.9.2
  • IBM Spectrum Protect Plus Container Backup and Restore for OpenShift – versions 10.1.7 to 10.1.9.2

The Cyber Centre encourages users and administrators to review the provided web links and apply the necessary updates, when available.

IBM – Apache Log4j Vulnerability

IBM Product Security Incident Response

Active Exploitation of Apache Log4j Vulnerability (AL21-019)
 



Source link