Vulnerability Bulletins

Security Bulletin: Information regarding security vulnerability in IBM SDK Java™ Technology Edition that is shipped with IBM WebSphere Application Server and addressed by Oracle CPU January 2014


System information

   
Affected software IBM

Description

Multiple security vulnerabilities exist in the IBM SDK Java Technology Edition that is shipped with IBM WebSphere Application Server and included in the products that are listed in this document. CVE(s): CVE-2014-0411 Affected product(s) and affected version(s): WebSphere Process Server V6.1.2, 6.2.x, 7.0.x WebSphere Process Server on z/OS V6.2.x, 7.0.x WebSphere Process Server Hypervisor Edition for Red Hat Enterprise Linux Server for x86 (32-bit) V7.0.0 WebSphere Process Server Hypervisor

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_information_regarding_security_vulnerability_in_ibm_sdk_java_technology_edition_that_is_shipped_with_ibm_websphere_application_server_and_addressed_by_oracle_cpu_january_2014?lan

Standar resources

Property Value
CVE CVE-2014-0411 ,CVE-2013-4353 ,CVE-2013-6450 ,CVE-2013-6449 ,CVE-2013-6440 ,CVE-2013-5987 and CVE-2013-6730.

Version history

Version Comments Date
1.0 Advisory issued 2014-03-07
Ministerio de Defensa
CNI
CCN
CCN-CERT