Boletines de Vulnerabilidades

IBM Security Bulletin: Security Vulnerability in Apache Batik (CVE-2015-0250)


Información sobre el sistema

   
Software afectado IBM

Descripción

Apache Batik could allow a remote attacker to obtain sensitive information. By persuading a victim to open a specially-crafted SVG file, an attacker could exploit this vulnerability to reveal files and obtain sensitive information. CVE(s): CVE-2015-0250 Affected product(s) and affected version(s): Product Name Versions Affected Rational Developer for Power Systems Software 8.0, 8.0.0.1, 8.0.0.2, 8.0.0.3, 8.0.3, 8.0.3.1, 8.5, 8.5.1 Rational Developer for i 9.0, 9.0.0.1,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_security_vulnerability_in_apache_batik_cve_2015_02501?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2015-0250 ,CVE-2015-1931 ,CVE-2015-2601 ,CVE-2015-2613 ,CVE-2015-2625 ,CVE-2015-4000 ,CVE-2015-4749 ,CVE-2014-8176 ,CVE-2015-1788 ,CVE-2015-1789 ,CVE-2015-1790 ,CVE-2015-1791 and CVE-2015-1792.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-08-18

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT