Boletines de Vulnerabilidades

IBM Security Bulletin: Security Bulletin: GSKit certificate chain vulnerability in IBM Tivoli Netview for z/OS v5.2, 5.3, 5.4, 6.1 & 6.2 (component: Tivoli NetView Management Console Topology Serv


Información sobre el sistema

   
Software afectado IBM

Descripción

A vulnerability has been identified in the GSKit component utilized by IBM Tivoli Netview for z/OS in the Tivoli NetView Management Console Topology Server only. A malformed certificate chain can cause the ISDS or TDS client application or server process using GSKit to hang or crash. Remediation for the issue consists of upgrading affected GSKit following the instructions at the end of this bulletin. CVE(s): CVE-2013-6746 Affected product(s) and affected version(s): This vulnerability

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_security_bulletin_gskit_certificate_chain_vulnerability_in_ibm_tivoli_netview_for_z_os_v5_2_5_3_5_4_6_1_amp_6_2_component_tivoli_netview_management_console_topology_server_on

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-05-06

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT