Vulnerability Bulletins

IBM Security Bulletin: PostgreSQL 9.2.8 as used in IBM QRadar SIEM 7.2.4 and IBM QRadar SIEM 7.1 MR2 is vulnerable to allow a remote authenticated attacker to obtain sensitive information. (CVE-2014-8


System information

   
Affected software IBM

Description

Multiple security vulnerabilities have been discovered in the PostgreSQL component bundled with IBM QRadar version 7.1.x and 7.2.x. CVE(s): CVE-2014-8161, CVE-2015-0241, CVE-2015-0243 and CVE-2015-0244 Affected product(s) and affected version(s): · IBM QRadar Security Information and Event Manager 7.2.x. · IBM QRadar Security Information and Event Manager 7.1.x.. Refer to the following reference URLs for remediation and additional vulnerability details: Source

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_postgresql_9_2_8_as_used_in_ibm_qradar_siem_7_2_4_and_ibm_qradar_siem_7_1_mr2_is_vulnerable_to_allow_a_remote_authenticated_attacker_to_obtain_sensitive_information_cve_2014_

Standar resources

Property Value
CVE

Version history

Version Comments Date
1.0 Advisory issued 2015-07-17
Ministerio de Defensa
CNI
CCN
CCN-CERT