Boletines de Vulnerabilidades

IBM Security Bulletin: IBM Tivoli Composite Application Manager for Transactions affected by multiple vulnerabilities in IBM JRE (Multiple CVEs)


Información sobre el sistema

   
Software afectado IBM

Descripción

There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition, Version 6.0, 7.0 that is used by IBM Tivoli Composite Application Manager for Transactions. These issues were disclosed as part of the IBM Runtime Environment Java updates in January 2015. CVE(s): CVE-2014-6549, CVE-2015-0408, CVE-2015-0412, CVE-2015-0395, CVE-2015-0403, CVE-2015-0406, CVE-2015-0410,CVE-2015-0407, CVE-2015-0400, CVE-2014-6587, CVE-2014-6593, CVE-2014-6591, CVE-2014-6585,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_tivoli_composite_application_manager_for_transactions_affected_by_multiple_vulnerabilities_in_ibm_jre_multiple_cves4?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-6549 ,CVE-2015-0408 ,CVE-2015-0412 ,CVE-2015-0395 ,CVE-2015-0403 ,CVE-2015-0406 ,CVE-2015-0410 ,CVE-2015-0407 ,CVE-2015-0400 ,CVE-2014-6587 ,CVE-2014-6593 ,CVE-2014-6591 ,CVE-2014-6585 ,CVE-2014-8891 ,CVE-2014-8892 ,CVE-2015-0160 ,CVE-2015-0161 ,CVE-2015-0168 ,CVE-2015-0169 ,CVE-2015-0170 ,CVE-2015-0171 ,CVE-2014-9495 ,CVE-2015-0973 ,CVE-2014-9293 ,CVE-2014-9294 ,CVE-2014-9295 ,CVE-2014-9296 and CVE-2015-0120.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-04-10

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT