Vulnerability Bulletins

IBM Security Bulletin: Apache HTTPComponents vulnerabilities in WebSphere Application Server (CVE-2012-6153, CVE-2014-3577)

   
Affected software IBM
 
There are two vulnerabilities in Apache HTTPComponents that are used in IBM WebSphere Application Server. Although IBM WebSphere Application server is not vulnerable to these, other products or applications that use these libraries could be vulnerable. CVE(s): CVE-2012-6153 and CVE-2014-3577 Affected product(s) and affected version(s): These vulnerabilities affect the following versions and releases of IBM WebSphere Application Server Version 8.5.5 Full Profile Version 8.5 Full

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_apache_httpcomponents_vulnerabilities_in_websphere_application_server_cve_2012_6153_cve_2014_3577?lang=en_us