Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in Open Source Apache Tomcat affect IBM FlashSystem 840, (CVE-2014-0227)

   
Affected software IBM
 
There is a vulnerability in Open Source Apache Tomcat that is used by IBM FlashSystem 840 which allows remote attackers to conduct HTTP request smuggling attacks or cause a denial of service under error scenarios. CVE(s): CVE-2014-0227 Affected product(s) and affected version(s): FlashSystem 840 MTMs 9840-AE1 and 9843-AE1, code level 1.1.3.7 and earlier are affected. The Service Assist GUI is the only component in the product that uses the Apache Struts library. Refer to the

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_open_source_apache_tomcat_affect_ibm_flashsystem_840_cve_2014_0227?lang=en_us