USN-3185-1 libXpm vulnerability
CVEs contained in this USN include: CVE-2016-10164
Severity is medium unless otherwise noted.
- Vulnerable Cloud Foundry BOSH stemcells and cflinuxfs2 versions listed here
- Pivotal products using CF components prior to the listed updated versions are vulnerable to this issue. See the Mitigation section below for more information.
Users of affected versions should apply the following mitigation:
- Releases that have fixed this issue include:
- PCF Elastic Runtime: 1.6.71, 1.7.56, 1.8.35, 1.9.13, 1.10.0