Wednesday, July 6, 2016

IBM Security Bulletin: IBM® SDK for Node.js™ may be affected by CVE-2014-9748

Unsafe use of read/write locks on Windows 2003 and Windows XP in libuv

CVE(s): CVE-2014-9748

Affected product(s) and affected version(s):

These vulnerabilities affect IBM SDK for Node.js v1.1.1.2 and previous releases.
These vulnerabilities affect IBM SDK for Node.js v1.2.0.13 and previous releases.

Note that this vulnerability affects users on Windows 2003 and Windows XP only. Use of the IBM SDK for Node.js is not officially supported on either of these platforms.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/29hoFJd
X-Force Database: http://ift.tt/29qo5wt



from IBM Product Security Incident Response Team http://ift.tt/29hoKfS

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.