PT-2015-4111 · Ibm+2 · Ibm Sdk+2
Published
2015-02-05
·
Updated
2019-07-16
·
CVE-2014-8892
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM SDK, Java Technology Edition versions 5.0 before SR16-FP9
IBM SDK, Java Technology Edition versions 6 before SR16-FP3
IBM SDK, Java Technology Edition versions 6R1 before SR8-FP3
IBM SDK, Java Technology Edition versions 7 before SR8-FP10
IBM SDK, Java Technology Edition versions 7R1 before SR2-FP10
Description
The issue allows remote attackers to bypass intended access permissions and obtain sensitive information via unspecified vectors related to the security manager.
Recommendations
For IBM SDK, Java Technology Edition version 5.0, update to SR16-FP9 or later.
For IBM SDK, Java Technology Edition version 6, update to SR16-FP3 or later.
For IBM SDK, Java Technology Edition version 6R1, update to SR8-FP3 or later.
For IBM SDK, Java Technology Edition version 7, update to SR8-FP10 or later.
For IBM SDK, Java Technology Edition version 7R1, update to SR2-FP10 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Sdk
Red Hat
Suse