Vulnerability Bulletins

IBM Security Bulletin: CICS Transaction Gateway for Multiplatforms


System information

   
Affected software IBM

Description

Multiple security vulnerablilities exist in the JREs shipped with CICS TG for client applications. CICS TG itself is not vulnerable to all these risks but client side applications using the CICS TG supplied JREs might be. CVE(s): CVE-2014-6601, CVE-2014-6549, CVE-2015-0408, CVE-2015-0412, CVE-2015-0437, CVE-2015-0395, CVE-2015-0403,CVE-2015-0406, CVE-2015-0383, CVE-2015-0410, CVE-2015-0407, CVE-2015-0400, CVE-2014-3566, CVE-2014-6587, CVE-2014-6593, CVE-2014-6591, CVE-2014-6585,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_cics_transaction_gateway_for_multiplatforms3?lang=en_us

Standar resources

Property Value
CVE CVE-2014-6601 ,CVE-2014-6549 ,CVE-2015-0408 ,CVE-2015-0412 ,CVE-2015-0437 ,CVE-2015-0395 ,CVE-2015-0403 ,CVE-2015-0406 ,CVE-2015-0383 ,CVE-2015-0410 ,CVE-2015-0407 ,CVE-2015-0400 ,CVE-2014-3566 ,CVE-2014-6587 ,CVE-2014-6593 ,CVE-2014-6591 ,CVE-2014-6585 ,CVE-2014-8891 ,CVE-2014-8892 ,CVE-2015-0102 ,CVE-2015-0209 ,CVE-2015-0286 ,CVE-2015-0287 ,CVE-2015-0288 ,CVE-2015-0289 ,CVE-2015-0292 and CVE-2015-0293.

Version history

Version Comments Date
1.0 Advisory issued 2015-04-19
Ministerio de Defensa
CNI
CCN
CCN-CERT