Vulnerability Bulletins

IBM Security Bulletin: IBM Algo One is affected by multiple Open Source Tomcat security vulnerabilities (CVE-2013-4444, CVE-2013-4286, CVE-2014-0033, CVE-2013-4322, CVE-2013-4590)

   
Affected software IBM
 
These security vulnerabilities exist in components of IBM Algo One, namely Counterparty Credit Risk (CCR), Algo Risk Application (ARA), and Algo One Core. See Vulnerability Details for CVE IDs. CVE(s): CVE-2013-4444, CVE-2013-4286, CVE-2014-0033, CVE-2013-4322, CVE-2012-3544 and CVE-2013-4590 Affected product(s) and affected version(s): CCR v. 5.0.0 Algo One Versions 4.7.0 through 5.0.0 ARA Versions 2.5.8 through 5.0.0 The following versions of the affected products are not being patched

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_algo_one_is_affected_by_multiple_open_source_tomcat_security_vulnerabilities_cve_2013_4444_cve_2013_4286_cve_2014_0033_cve_2013_4322_cve_2013_4590?lang=en_us