Boletines de Vulnerabilidades

IBM Security Bulletin: IBM Smart Analytics System 5600 is affected by multiple vulnerabilities in the IBM SDK Java™ Technology Edition, Version 6


Información sobre el sistema

   
Software afectado IBM

Descripción

There are multiple vulnerabilities in IBM® SDK Java™ Technology Edition, Version 6 that is used by IBM Smart Analytics System 5600. These issues were disclosed as part of the IBM Java SDK updates in January 2015. This bulletin also addresses the “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability. CVE(s): CVE-2015-0138, CVE-2014-6549, CVE-2015-0408, CVE-2015-0412, CVE-2015-0395, CVE-2015-0403, CVE-2015-0406,CVE-2015-0410, CVE-2015-0407,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_smart_analytics_system_5600_is_affected_by_multiple_vulnerabilities_in_the_ibm_sdk_java_technology_edition_version_6?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-8917 ,CVE-2015-1902 ,CVE-2015-1903 ,CVE-2014-3569 ,CVE-2014-3570 ,CVE-2014-3572 ,CVE-2014-8275 ,CVE-2015-0204 ,CVE-2015-0205 ,CVE-2015-0208 ,CVE-2015-0209 ,CVE-2015-0285 ,CVE-2015-0286 ,CVE-2015-0287 ,CVE-2015-0288 ,CVE-2015-0289 ,CVE-2015-0292 ,CVE-2015-0293 ,CVE-2015-0138 ,CVE-2014-6549 ,CVE-2015-0408 ,CVE-2015-0412 ,CVE-2015-0395 ,CVE-2015-0403 ,CVE-2015-0406 ,CVE-2015-0410 ,CVE-2015-0407 ,CVE-2015-0400 ,CVE-2014-6587 ,CVE-2014-6593 ,CVE-2014-6591 ,CVE-2014-6585 and CVE-2014-8892.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-05-13

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT