Boletines de Vulnerabilidades

IBM Security Bulletin: Vulnerability in Open Source Apache Tomcat affect IBM FlashSystem 840, (CVE-2014-0227)


Información sobre el sistema

   
Software afectado IBM

Descripción

There is a vulnerability in Open Source Apache Tomcat that is used by IBM FlashSystem 840 which allows remote attackers to conduct HTTP request smuggling attacks or cause a denial of service under error scenarios. CVE(s): CVE-2014-0227 Affected product(s) and affected version(s): FlashSystem 840 MTMs 9840-AE1 and 9843-AE1, code level 1.1.3.7 and earlier are affected. The Service Assist GUI is the only component in the product that uses the Apache Struts library. Refer to the

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_open_source_apache_tomcat_affect_ibm_flashsystem_840_cve_2014_0227?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0227 ,CVE-2015-0488 ,CVE-2015-0478 ,CVE-2015-2808 ,CVE-2015-1916 ,CVE-2015-0209 ,CVE-2015-0286 ,CVE-2015-0289 ,CVE-2014-3569 ,CVE-2014-3570 ,CVE-2014-3572 ,CVE-2014-8275 ,CVE-2015-0204 and CVE-2015-0205.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-08-07

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT