PT-2016-3646 · Ibm · Ibm Spss Modeler
Published
2016-02-15
·
Updated
2016-03-10
·
CVE-2015-4991
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM SPSS Modeler versions 14.2 through FP3 IF027
IBM SPSS Modeler versions 15 through FP3 IF015
IBM SPSS Modeler versions 16 through FP2 IF012
IBM SPSS Modeler versions 17 through FP1 IF018
IBM SPSS Modeler versions 17.1 through IF008
Description
The issue allows local users to obtain sensitive information by reading a dump file, as unspecified cleartext data is included in memory dumps.
Recommendations
For IBM SPSS Modeler version 14.2 through FP3 IF027, update to a version later than FP3 IF027 to resolve the issue.
For IBM SPSS Modeler version 15 through FP3 IF015, update to a version later than FP3 IF015 to resolve the issue.
For IBM SPSS Modeler version 16 through FP2 IF012, update to a version later than FP2 IF012 to resolve the issue.
For IBM SPSS Modeler version 17 through FP1 IF018, update to a version later than FP1 IF018 to resolve the issue.
For IBM SPSS Modeler version 17.1 through IF008, update to a version later than IF008 to resolve the issue.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Spss Modeler