Boletines de Vulnerabilidades

IBM Security Bulletin: Rational Test Control Panel component in Rational Test Workbench and Rational Test Virtualization Server uses an insecure hashing scheme for handling user passwords (CVE-2015-19


Información sobre el sistema

   
Software afectado IBM

Descripción

Rational Test Control Panel component stores MD5 hashes of user passwords, which has now proven to be insecure. CVE(s): CVE-2015-1913 Affected product(s) and affected version(s): Rational Test Control Panel component in Rational Test Workbench and Rational Test Virtualization Server versions: 8.0.0.x 8.0.1.x 8.5.0.x 8.5.1.x 8.6.0.x 8.7.0.x Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_rational_test_control_panel_component_in_rational_test_workbench_and_rational_test_virtualization_server_uses_an_insecure_hashing_scheme_for_handling_user_passwords_cve_2015_

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-06-20

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT