Boletines de Vulnerabilidades

IBM Security Bulletin: Rational ClearQuest is affected by the following OpenSSL vulnerabilities: CVE-2014-0224, CVE-2014-3470


Información sobre el sistema

   
Software afectado IBM

Descripción

Security vulnerabilities have been discovered in OpenSSL that were reported on June 5, 2014 by the OpenSSL Project. The OpenSSL commponent is shipped as embedded in cqperl. Customers might be affected when there is perl hooks or scripts that are using SSL connections. ClearQuest itself does not provide any service using OpenSSL. CVE(s): CVE-2014-0224 and CVE-2014-3470 Affected product(s) and affected version(s): IBM Rational ClearQuest versions: Version Status 8.0.1 through

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_rational_clearquest_is_affected_by_the_following_openssl_vulnerabilities_cve_2014_0224_cve_2014_3470?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0224 ,CVE-2014-3470 ,CVE-2014-0098 ,CVE-2013-4286 and CVE-2014-0107.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-06-27

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT