Boletines de Vulnerabilidades

IBM Security Bulletin: Vulnerability in Apache Commons affects WebSphere DataPower XC10 Appliance (CVE-2015-7450)


Información sobre el sistema

   
Software afectado IBM

Descripción

An Apache Commons Collections vulnerability for handling Java object deserialization was addressed by WebSphere DataPower XC10 Appliance. CVE(s): CVE-2015-7450 Affected product(s) and affected version(s): WebSphere DataPower XC10 Appliance versions 2.1 and 2.5 at all firmware levels. Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21971290 X-Force Database:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_apache_commons_affects_websphere_datapower_xc10_appliance_cve_2015_7450?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2015-7450 ,CVE-2015-3253 ,CVE-2015-4872 ,CVE-2015-4734 and CVE-2015-5006.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-11-26

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT