Vulnerability Bulletins

IBM Security Bulletin: Sensitive data lingers in memory on the WebSphere DataPower XC10 Appliance

   
Affected software IBM
 
Sensitive data lingers in memory allowing access by an administrator of the WebSphere DataPower XC10 Appliance. This is addressed in the interim fix. CVE(s): CVE-2015-7418Affected product(s) and affected version(s):WebSphere DataPower XC10 Appliance versions 2.1 and 2.5 at all firmware levels. Refer to the following reference URLs for remediation and additional vulnerability details:Source Bulletin: http://www.ibm.com/support/docview.wss?uid=swg21971658X-Force Database:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_sensitive_data_lingers_in_memory_on_the_websphere_datapower_xc10_appliance?lang=en_us