First published: Thu Aug 24 2023(Updated: )
** REJECT ** Not a Security Issue.
Credit: secalert@redhat.com secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cognos Analytics | <=12.0.0-12.0.3 | |
IBM Cognos Analytics | <=11.2.0-11.2.4 FP4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
No, it is not a security issue.
The versions affected are 4.0.3-7ubuntu0.11+ (trusty), 4.0.6-1ubuntu0.8+ (xenial), 4.0.9-5ubuntu0.10+ (bionic), 4.1.0+ (focal), 4.3.0-6ubuntu0.5 (jammy), 4.5.0-5ubuntu1.1 (lunar), and 4.5.1+ (upstream).
The recommended fix for CVE-2023-38289 is to update the tiff package to version 4.1.0+ or later.
You can find more information about CVE-2023-38289 at the following references: [1] [2] [3].
The CWE for CVE-2023-38289 is CWE-190.