Boletines de Vulnerabilidades

IBM Security Bulletin: Multiple vulnerabilities in IBM SPSS Modeler (CVE-2013-6739, CVE-2013-5372, CVE-2013-5825)


Información sobre el sistema

   
Software afectado IBM

Descripción

Vulnerabilities have been identified in IBM SPSS Modeler which make the product vulnerable to an incorrect Single Sign On being accepted on UNIX and a denial of service attack triggered by a malicious XML data. CVE(s): CVE-2013-6739, CVE-2013-5372 and CVE-2013-5825 Affected product(s) and affected version(s): Versions 14 through 15.0 of IBM SPSS Modeler running on all supported platforms are affected. Refer to the following reference URLs for remediation and additional vulnerability

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_spss_modeler_cve_2013_6739_cve_2013_5372_cve_2013_5825?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2013-6739 ,CVE-2013-5372 and CVE-2013-5825.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-03-04

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT