Boletines de Vulnerabilidades

IBM Security Bulletin: Multiple OpenSSL vulnerabilities in IBM Endpoint Manager for Remote Control. (CVE-2013-4353,CVE-2013-6449)


Información sobre el sistema

   
Software afectado IBM

Descripción

Security vulnerabilities exist in the version of OpenSSL shipped with IBM Endpoint Manager for Remote Control. CVE(s): CVE-2013-4353 and CVE-2013-6449 Affected product(s) and affected version(s): IBM Endpoint Manager for Remote Control version 9.0.0 and 9.0.1. Please note: Tivoli Remote Control 5.1.2 and Tivoli Endpoint Manager for Remote Control 8.2.1 are also affected by these vulnerabilities. Fixes for these product versions will be released in April 2014. Refer to the following

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_openssl_vulnerabilities_in_ibm_endpoint_manager_for_remote_control_cve_2013_4353_cve_2013_64491?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2013-4353 ,CVE-2013-6449 ,CVE-2014-0834 ,CVE-2014-0411 ,CVE-2013-4548 and CVE-2013-5371.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-03-04

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT