Vulnerability Bulletins

IBM Security Bulletin: IBM SmartCloud Entry Keystone Vulnerabilities (CVE-2014-3520)

   
Affected software IBM
 
IBM SmartCloud Entry is vulnerable to an OpenStack Keystone issue which could allow a remote authenticated attacker to gain elevated privileges. CVE(s): CVE-2014-3520 Affected product(s) and affected version(s): IBM SmartCloud Entry 3.2.0, IBM SmartCloud Entry 3.1.0 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www.ibm.com/support/docview.wss?uid=isg3T1021818 X-Force Database: http://xforce.iss.net/xforce/xfdb/94282

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_smartcloud_entry_keystone_vulnerabilities_cve_2014_3520?lang=en_us