Vulnerability Bulletins |
IBM Security Bulletin: IBM PowerVC SSH Communication vulnerable to MITM attacks (CVE-2014-4749) |
|
| Affected software | IBM |
|
PowerVC is missing appropriate SSH known_hosts checks. CVE(s): CVE-2014-4749 Affected product(s) and affected version(s): PowerVC Express Edition 1.2.0.0 through 1.2.0.2 PowerVC Standard Edition 1.2.0.0 through 1.2.0.2 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=nas8N1020224 X-Force Database: http://xforce.iss.net/xforce/xfdb/94351 More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_powervc_ssh_communication_vulnerable_to_mitm_attacks_cve_2014_4749?lang=en_us |
|






