Vulnerability Bulletins

IBM Security Bulletin: IBM Algo One is affected by multiple Open Source Tomcat security vulnerabilities reported in May 2014 X-Force Report (CVE-2014-0096, CVE-2014-0099, CVE-2014-0119).

   
Affected software IBM
 
These security vulnerabilities exist in components of IBM Algo One, namely Counterparty Credit Risk (CCR), Algo Risk Application (ARA), and Algo One Core. See Vulnerability Details for CVE IDs. CVE(s): CVE-2014-0096, CVE-2014-0099 and CVE-2014-0119 Affected product(s) and affected version(s): CCR v. 5.0.0 Algo One Versions 4.7.0 through 5.0.0 ARA Versions 2.5.8 through 5.0.0 The following versions of the affected products are not being patched and users currently on one of the versions

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_algo_one_is_affected_by_multiple_open_source_tomcat_security_vulnerabilities_reported_in_may_2014_x_force_report_cve_2014_0096_cve_2014_0099_cve_2014_0119?lang=en_us