Boletines de Vulnerabilidades

IBM Security Bulletin: IBM Cognos Business Intelligence Server is affected by multiple vulnerabilities (CVE-2014-3566, CVE-2014-6145, CVE-2014-1568, CVE-2014-4263, CVE-2012-5784, CVE-2014-3513, CVE-20


Información sobre el sistema

   
Software afectado IBM

Descripción

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition that is used by IBM Cognos Business Intelligence. These issues were disclosed as part of the IBM Java SDK updates in July 2014. OpenSSL vulnerabilities along with SSL 3 Fallback protection (TLS_FALLBACK_SCSV) were disclosed on October 15, 2014 by the OpenSSL Project. OpenSSL is used by IBM Cognos Business Intelligence . IBM Cognos Business Intelligence has addressed the applicable CVEs and

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_cognos_business_intelligence_server_is_affected_by_multiple_vulnerabilities_cve_2014_3566_cve_2014_6145_cve_2014_1568_cve_2014_4263_cve_2012_5784_cve_2014_3513_cve_2014_3

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-12-18

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT