Boletines de Vulnerabilidades

IBM Security Bulletin: IBM Tivoli Netcool Configuration Manager, Java vulnerabilities (CVE-2014-2398) (CVE-2014-0453)


Información sobre el sistema

   
Software afectado IBM

Descripción

The IBM WebSphere Application Server, which is embedded with IBM Tivoli Netcool Configuration Manager, is shipped with an IBM SDK for Java that is based on the Oracle JDK. Oracle has released April 2014 critical patch updates (CPU) which contain security vulnerability fixes. The IBM SDK for Java has been updated to incorporate these fixes plus one additional vulnerability (CVE-2014-0878). Full details: http://www-01.ibm.com/support/docview.wss?uid=swg21673013 CVE(s): CVE-2014-0878,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_tivoli_netcool_configuration_manager_java_vulnerabilities_cve_2014_2398_cve_2014_0453?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-2398 ,CVE-2014-0453 ,CVE-2014-3053 ,CVE-2014-2414 ,CVE-2014-0114 and CVE-2014-0878.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-06-21

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT