Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in Kerberos (krb5) affect IBM Security Network Protection (CVE-2014-5352, CVE-2014-5353, CVE-2014-5355, CVE-2014-9421, and CVE-2014-9422)

   
Affected software IBM
 
IBM Security Network Protection uses Kerberos (krb5) to provide network authentication. The Kerberos (krb5) version that is shipped with IBM Security Network Protection contains multiple security vulnerabilities. CVE(s): CVE-2014-5352, CVE-2014-5353, CVE-2014-5355, CVE-2014-9421 and CVE-2014-9422 Affected product(s) and affected version(s): IBM Security Network Protection 5.2 IBM Security Network Protection 5.3 Refer to the following reference URLs for remediation and additional

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_kerberos_krb5_affect_ibm_security_network_protection_cve_2014_5352_cve_2014_5353_cve_2014_5355_cve_2014_9421_and_cve_2014_9422?lang=en_us