Vulnerability Bulletins

IBM Security Bulletin: IBM InfoSphere BigInsights affected by vulnerability in Big SQL component (CVE-2015-1889)


System information

   
Affected software IBM

Description

A security vulnerability has been identified in the Big SQL component of InfoSphere BigInsights that could allow a malicious user to gain unauthorized access to the HDFS data in the cluster. CVE(s): CVE-2015-1889 Affected product(s) and affected version(s): IBM InfoSphere BigInsights 3.0, 3.0.0.1 and 3.0.0.2 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www.ibm.com/support/docview.wss?uid=swg21700654 X-Force

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_infosphere_biginsights_affected_by_vulnerability_in_big_sql_component_cve_2015_1889?lang=en_us

Standar resources

Property Value
CVE CVE-2015-1889 ,CVE-2014-3569 ,CVE-2014-3570 ,CVE-2014-3571 ,CVE-2014-3572 ,CVE-2014-8275 ,CVE-2015-0204 ,CVE-2015-0205 ,CVE-2015-0206 ,CVE-2014-6593 ,CVE-2015-0138 ,CVE-2015-0400 ,CVE-2015-0410 ,CVE-2014-3566 ,CVE-2014-6585 and CVE-2014-6591.

Version history

Version Comments Date
1.0 Advisory issued 2015-04-16
Ministerio de Defensa
CNI
CCN
CCN-CERT