Vulnerability Bulletins

IBM Security Bulletin: Apache Camel Vulnerability in IBM Algo Audit and Compliance (CVE-2015-5348)

   
Affected software IBM
 
Apache Camel could allow a remote attacker to obtain sensitive information, caused by the deserialization of HTTP requests that uses the content-header: application/x-java-serialized-object. Apache Camel is used by IBM Algo Audit and Compliance. CVE(s): CVE-2015-5348Affected product(s) and affected version(s):IBM Algo Audit and Compliance versions 2.1.0 Refer to the following reference URLs for remediation and additional vulnerability details:Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_apache_camel_vulnerability_in_ibm_algo_audit_and_compliance_cve_2015_5348?lang=en_us