Boletines de Vulnerabilidades

Security Bulletin: Critical security vulnerability in Jazz Team Server affecting all CLM Applications (CVE-2014-0862)


Información sobre el sistema

   
Software afectado IBM

Descripción

A high risk vulnerability has been identified in the Jazz Team Server affecting all Collaborative Lifecycle Management (CLM) Applications. The exposure would allow a remote attacker to execute arbitrary code on the server. CVE(s): CVE-2014-0862 Affected product(s) and affected version(s): Rational Quality Manager 2.0 - 2.0.1 (All Editions) Rational Quality Manager 4.0 - 4.0.5 Rational Team Concert 4.0 - 4.0.5 Rational Requirements Composer 2.0 - 2.0.0.4 (All Editions) Rational Requirements

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_critical_security_vulnerability_in_jazz_team_server_affecting_all_clm_applications_cve_2014_0862?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0862 ,CVE-2014-0844 ,CVE-2014-0845 ,CVE-2014-0846 ,CVE-2013-5802 ,CVE-2013-5825 ,CVE-2013-6747 and CVE-2013-5400.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-03-04

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT