Boletines de Vulnerabilidades

IBM Security Bulletin: Apache Tomcat security vulnerability issues on IBM SONAS (CVE-2014-0075, CVE-2014-0096, CVE-2014-0099, CVE-2014-0119)


Información sobre el sistema

   
Software afectado IBM

Descripción

IBM SONAS is shipped with Apache Tomcat, for which fixes are available for five security vulnerabilities. CVE(s): CVE-2014-0075, CVE-2014-0096, CVE-2014-0099 and CVE-2014-0119 Affected product(s) and affected version(s): IBM SONAS The product is affected when running a code releases 1.3.0.0 to 1.4.3.3 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004849 X-Force Database:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_apache_tomcat_security_vulnerability_issues_on_ibm_sonas_cve_2014_0075_cve_2014_0096_cve_2014_0099_cve_2014_0119?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0075 ,CVE-2014-0096 ,CVE-2014-0099 ,CVE-2014-0119 ,CVE-2014-3077 ,CVE-2014-1518 ,CVE-2014-1523 ,CVE-2014-1524 ,CVE-2014-1529 ,CVE-2014-1530 ,CVE-2014-1531 ,CVE-2014-1532 ,CVE-2014-1533 ,CVE-2014-1538 ,CVE-2014-1541 and CVE-2014-0094.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-09-13

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT