Boletines de Vulnerabilidades

IBM Security Bulletin: IBM Algo One is affected by multiple Open Source Tomcat security vulnerabilities reported in May 2014 X-Force Report (CVE-2014-0096, CVE-2014-0099, CVE-2014-0119).


Información sobre el sistema

   
Software afectado IBM

Descripción

These security vulnerabilities exist in components of IBM Algo One, namely Counterparty Credit Risk (CCR), Algo Risk Application (ARA), and Algo One Core. See Vulnerability Details for CVE IDs. CVE(s): CVE-2014-0096, CVE-2014-0099 and CVE-2014-0119 Affected product(s) and affected version(s): CCR v. 5.0.0 Algo One Versions 4.7.0 through 5.0.0 ARA Versions 2.5.8 through 5.0.0 The following versions of the affected products are not being patched and users currently on one of the versions

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_algo_one_is_affected_by_multiple_open_source_tomcat_security_vulnerabilities_reported_in_may_2014_x_force_report_cve_2014_0096_cve_2014_0099_cve_2014_0119?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0096 ,CVE-2014-0099 ,CVE-2014-0119 ,CVE-2014-3470 and CVE-2014-0139.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-12-19

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT