Boletines de Vulnerabilidades

IBM Security Bulletin: Multiple vulnerabilities in OpenSSL affect Rational ClearQuest (CVE-2014-5139, CVE-2014-3509, CVE-2014-3511)


Información sobre el sistema

   
Software afectado IBM

Descripción

There are multiple vulnerabilities in OpenSSL affecting IBM Rational ClearQuest. These issues were disclosed on August 6, 2014 by the OpenSSL Project. CVE(s): CVE-2014-5139, CVE-2014-3511 and CVE-2014-3509 Affected product(s) and affected version(s): IBM Rational ClearQuest versions: 7.1.0.x (any version) 7.1.1.x (any version) 7.1.2 through 7.1.2.15 8.0 through 8.0.0.12 8.0.1 through 8.0.1.5. OpenSSL is embedded in cqperl and ratlperl. You are vulnerable if you use OpenSSL in

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_openssl_affect_rational_clearquest_cve_2014_5139_cve_2014_3509_cve_2014_3511?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-5139 ,CVE-2014-3511 ,CVE-2014-3509 ,CVE-2014-3508 ,CVE-2014-3505 ,CVE-2014-3506 ,CVE-2014-3507 ,CVE-2014-3510 ,CVE-2014-4244 and CVE-2014-4263.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-12-18

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT