Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in modules from the IBM SDK for Node.js affect the Cordova tools in IBM Rational Application Developer (CVE-2014-7191 and CVE-2014-7192)

   
Affected software IBM
 
Security vulnerabilities have been discovered in the syntax-error and qs modules packaged in the IBM SDK for Node.js and Cordova platform packaged in IBM Rational Application Developer. CVE(s): CVE-2014-7191 and CVE-2014-7192 Affected product(s) and affected version(s): IBM Rational Application Developer for WebSphere Software 9.1, 9.1.0.1, and 9.1.1. Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_modules_from_the_ibm_sdk_for_node_js_affect_the_cordova_tools_in_ibm_rational_application_developer_cve_2014_7191_and_cve_2014_7192?lang=en_us