Vulnerability Bulletins

IBM Security Bulletin: Two vulnerabilities in IBM® SDK Java™ Technology Edition affect WebSphere DataPower XC10 Appliance:CVE-2014-3566,CVE-2014-6457

   
Affected software IBM
 
Two vulnerabilities are present in IBM® SDK Javaâ„¢ Technology Edition as embedded in the WebSphere DataPower XC10 Appliance. This issue was disclosed as part of the IBM SDK Java updates in October 2014. CVE(s): CVE-2014-3566 and CVE-2014-6457 Affected product(s) and affected version(s): WebSphere DataPower XC10 Appliance Version 2.1 WebSphere DataPower XC10 Appliance Version 2.5 Refer to the following reference URLs for remediation and additional vulnerability

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_two_vulnerabilities_in_ibm_sdk_java_technology_edition_affect_websphere_datapower_xc10_appliance_cve_2014_3566_cve_2014_6457?lang=en_us