2

Security Bulletin: An Eclipse Jetty Vulnerability Affects IBM Sterling Secure External Authentication Server (CVE-2020-27216)

<p> A vulnerability allowing Eclipse Jetty to gain elevated privileges was addressed by IBM Sterling Secure External Authentication Server. </p>
<p>Affected product(s) and affected version(s):</p>
<table border="1">
<tbody>
<tr>
<td style="width: 253px;">Affected Product(s)</td>
<td style="width: 159px;">Version(s)</td>
</tr>
<tr>
<td style="width: 253px;">IBM External Authentication Server</td>
<td style="width: 159px;">6.0.0 through 6.0.1.1 iFix 2</td>
</tr>
<tr>
<td style="width: 253px;">IBM Sterling External Authentication Server</td>
<td style="width: 159px;">2.4.3 through 2.4.3.2 iFix 9</td>
</tr>
</tbody>
</table>
</p>
<p> Refer to the following reference URLs for remediation and additional vulnerability details: &nbsp;
Source Bulletin: <a href=https://www.ibm.com/support/pages/node/6398776> https://www.ibm.com/support/pages/node/6398776</a> </p>
<p>The post <a rel="nofollow" href="https://www.ibm.com/blogs/psirt/security-bulletin-an-eclipse-jetty-vulnerability-affects-ibm-sterling-secure-external-authentication-server-cve-2020-27216/">Security Bulletin: An Eclipse Jetty Vulnerability Affects IBM Sterling Secure External Authentication Server (CVE-2020-27216)</a> appeared first on <a rel="nofollow" href="https://www.ibm.com/blogs/psirt">IBM PSIRT Blog</a>.</p>
[fixed][/fixed]
[/not-available]