Boletines de Vulnerabilidades

IBM Security Bulletin: IBM Cognos Express is affected by the following vulnerabilities: CVE-2014-0416, CVE-2014-0411, CVE-2014-0423


Información sobre el sistema

   
Software afectado IBM

Descripción

IBM Cognos Express is affected by multiple security exposures identified in the January 2014 IBM Java Quarterly CPU report. CVE(s): CVE-2014-0416, CVE-2014-0411 and CVE-2014-0423 Affected product(s) and affected version(s): IBM Cognos Express 9.5 IBM Cognos Express 10.1 IBM Cognos Express 10.2.1 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21687632 X-Force Database:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_cognos_express_is_affected_by_the_following_vulnerabilities_cve_2014_0416_cve_2014_0411_cve_2014_0423?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0416 ,CVE-2014-0411 ,CVE-2014-0423 ,CVE-2014-3566 ,CVE-2014-6271 ,CVE-2014-7169 ,CVE-2013-6429 ,CVE-2013-6430 ,CVE-2013-4444 ,CVE-2013-4286 ,CVE-2014-0033 ,CVE-2013-4322 ,CVE-2013-4590 ,CVE-2014-0075 ,CVE-2014-0095 ,CVE-2014-0096 ,CVE-2014-0099 and CVE-2014-0119.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-11-05

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT