Thursday, May 26, 2016

IBM Security Bulletin: Multiple vulnerabilities in Apache Tomcat affect IBM SAN Volume Controller and Storwize Family

Vulnerabilities in the Apache Tomcat component affect the product’s management GUI. The CLI interface is unaffected. The CVEs are CVE-2015-5345 CVE-2015-5346 CVE-2015-5351 CVE-2016-0706 CVE-2016-0714 CVE-2016-0763 CVE-2015-5174.

CVE(s): CVE-2015-5345, CVE-2015-5346, CVE-2015-5351, CVE-2016-0706, CVE-2016-0714, CVE-2016-0763, CVE-2015-5174

Affected product(s) and affected version(s):

IBM SAN Volume Controller
IBM Storwize V7000
IBM Storwize V5000
IBM Storwize V3700
IBM Storwize V3500

All products are affected when running supported releases 1.1 to 7.6.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1TXkdPO
X-Force Database: http://ift.tt/1rhWy5x
X-Force Database: http://ift.tt/1NSj9zW
X-Force Database: http://ift.tt/1rhWy5D
X-Force Database: http://ift.tt/1NSj9A0
X-Force Database: http://ift.tt/1rhWvqf
X-Force Database: http://ift.tt/1NSj7YV
X-Force Database: http://ift.tt/1rhWylT



from IBM PSIRT Blog http://ift.tt/1OP8CAQ

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.