CVE-2016-2969: Infoleak
Published Aug 29, 2017
·Updated
IBM Sametime Meeting Server 8.5.2 and 9.0 may send replies that contain emails of people that should not be in these messages. IBM X-Force ID: 113850.
Affected Software
5 affected components
IBM Sametime=8.5.2.0
IBM Sametime=8.5.2.1
IBM Sametime=9.0.0.0
IBM Sametime=9.0.0.1
IBM Sametime=9.0.1
Remediation
Patch Available
Event History
Aug 29, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-2969?
CVE-2016-2969 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2016-2969?
To address CVE-2016-2969, update your IBM Sametime Meeting Server to the latest version that resolves the issue.
3
What are the affected versions in CVE-2016-2969?
CVE-2016-2969 affects IBM Sametime Meeting Server versions 8.5.2, 8.5.2.1, and 9.0.0.0, 9.0.0.1, and 9.0.1.
4
What impact does CVE-2016-2969 have on user privacy?
CVE-2016-2969 may lead to unauthorized exposure of email addresses of users who should not be included in message replies.
5
When was CVE-2016-2969 reported?
CVE-2016-2969 was reported in 2016.