Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in GPFS affects IBM® DB2® LUW on AIX and Linux (CVE-2015-0197, CVE-2015-0198, CVE-2015-0199)


System information

   
Affected software IBM

Description

There are multiple vulnerabilities in IBM® General Parallel File System, Versions V3.4 and V3.5 that are used by DB2® pureScale™ Feature on AIX and Linux. CVE(s): CVE-2015-0197, CVE-2015-0198 and CVE-2015-0199 Affected product(s) and affected version(s): Customers who have DB2® pureScale™ Feature installed in their DB2 database system are affected. For CVE-2015-0198, you are not affected if either of the following are true: the cipherList configuration

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_gpfs_affects_ibm_db2_luw_on_aix_and_linux_cve_2015_0197_cve_2015_0198_cve_2015_01991?lang=en_us

Standar resources

Property Value
CVE CVE-2015-0197 ,CVE-2015-0198 ,CVE-2015-0199 ,CVE-2015-0203 ,CVE-2015-0223 ,CVE-2015-0224 ,CVE-2015-0157 ,CVE-2015-1883 ,CVE-2014-8501 ,CVE-2014-8502 ,CVE-2014-8503 and CVE-2014-8910.

Version history

Version Comments Date
1.0 Advisory issued 2015-07-15
Ministerio de Defensa
CNI
CCN
CCN-CERT