Multiple IBM products GSKit Client Hello Message Remote Denial of Service Vulnerability
BID:55185
Info
Multiple IBM products GSKit Client Hello Message Remote Denial of Service Vulnerability
| Bugtraq ID: | 55185 |
| Class: | Unknown |
| CVE: |
CVE-2012-2190 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 23 2012 12:00AM |
| Updated: | Mar 19 2015 08:50AM |
| Credit: | IBM |
| Vulnerable: |
IBM Websphere Application Server 8.0 2 IBM Websphere Application Server 7.0 21 IBM Websphere Application Server 7.0 .2 IBM Websphere Application Server 7.0 .13 IBM Websphere Application Server 7.0 .12 IBM Websphere Application Server 7.0 .11 IBM Websphere Application Server 6.1 41 IBM Websphere Application Server 6.1 .4 IBM Websphere Application Server 6.1 .33 IBM Websphere Application Server 6.1 .32 IBM Websphere Application Server 6.1 .3 IBM Websphere Application Server 6.1 .25 IBM Websphere Application Server 6.1 .23 IBM Websphere Application Server 6.1 .22 IBM Websphere Application Server 6.1 .21 IBM Websphere Application Server 6.1 .20 IBM Websphere Application Server 6.1 .2 IBM Websphere Application Server 6.1 .19 IBM Websphere Application Server 6.1 .18 IBM Websphere Application Server 6.1 .17 IBM Websphere Application Server 6.1 .15 IBM Websphere Application Server 6.1 .14 IBM Websphere Application Server 6.1 .13 IBM Websphere Application Server 6.1 .12 IBM Websphere Application Server 6.1 .11 IBM Websphere Application Server 6.1 .10 IBM Websphere Application Server 6.1 .1 IBM Websphere Application Server 6.1 IBM Websphere Application Server 8.0.0.1 IBM Websphere Application Server 8.0.0.0 IBM Websphere Application Server 8.0 IBM Websphere Application Server 7.0.0.23 IBM Websphere Application Server 7.0.0.19 IBM Websphere Application Server 7.0.0.17 IBM Websphere Application Server 7.0.0.15 IBM Websphere Application Server 7.0.0.14 IBM Websphere Application Server 7.0.0.13 IBM Websphere Application Server 7.0.0.1 IBM Websphere Application Server 7.0.0.0 IBM Websphere Application Server 7.0 IBM Websphere Application Server 6.1.0.43 IBM Websphere Application Server 6.1.0.39 IBM Websphere Application Server 6.1.0.37 IBM Websphere Application Server 6.1.0.35 IBM Websphere Application Server 6.1.0.34 IBM Websphere Application Server 6.1.0.33 IBM Websphere Application Server 6.1.0.31 IBM Websphere Application Server 6.1.0.29 IBM Websphere Application Server 6.1.0.27 IBM Websphere Application Server 6.1 IBM Tivoli Netcool/OMNIbus 7.3 IBM Tivoli Monitoring 6.2.3 IBM Tivoli Monitoring 6.2.2 IBM Tivoli Monitoring 6.2.1 IBM Tivoli Monitoring 6.2 IBM Tivoli Directory Server 6.2 IBM Tivoli Directory Server 6.1 IBM Tivoli Directory Server 6.0 IBM DB2 Workgroup Server Edition 9.7 IBM DB2 Workgroup Server Edition 9.5 IBM DB2 Express Edition 9.7 IBM DB2 Express Edition 9.5 IBM DB2 Enterprise Server Edition 9.7 IBM DB2 Enterprise Server Edition 9.5 IBM DB2 Connect Unlimited Edition for System z 9.7 IBM DB2 Connect Unlimited Edition for System z 9.5 IBM DB2 Connect Unlimited Edition for System i 9.7 IBM DB2 Connect Unlimited Edition for System i 9.5 IBM DB2 Connect Enterprise Edition 9.7 IBM DB2 Connect Enterprise Edition 9.5 IBM DB2 Advanced Enterprise Server Edition 9.7 IBM DB2 Advanced Enterprise Server Edition 9.5 IBM Application Manager for Smart Business 1.2.1 |
| Not Vulnerable: |
IBM Websphere Application Server 8.0.0.4 IBM Websphere Application Server 6.1.0.45 |
Discussion
Multiple IBM products GSKit Client Hello Message Remote Denial of Service Vulnerability
Multiple IBM products are prone to a remote denial-of-service vulnerability because of an error in the Global Secure ToolKit (GSKit).
Exploiting this issue allows remote attackers to trigger denial-of-service conditions.
The following products are vulnerable:
IBM WebSphere Application Server
IBM WebSphere Business Events
IBM Tivoli Directory Server
Note: This BID was previously titled 'IBM WebSphere Application Server Remote Denial of Service Vulnerability'. The title and details have been changed to better reflect the underlying component affected.
Multiple IBM products are prone to a remote denial-of-service vulnerability because of an error in the Global Secure ToolKit (GSKit).
Exploiting this issue allows remote attackers to trigger denial-of-service conditions.
The following products are vulnerable:
IBM WebSphere Application Server
IBM WebSphere Business Events
IBM Tivoli Directory Server
Note: This BID was previously titled 'IBM WebSphere Application Server Remote Denial of Service Vulnerability'. The title and details have been changed to better reflect the underlying component affected.
Exploit / POC
Multiple IBM products GSKit Client Hello Message Remote Denial of Service Vulnerability
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Multiple IBM products GSKit Client Hello Message Remote Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Multiple IBM products GSKit Client Hello Message Remote Denial of Service Vulnerability
References:
References:
- IBM Homepage (IBM)
- Multiple IBM products GSKit client hello message denial of service (IBM)
- GSKit Security Vulnerabilities addressed in IBM Tivoli Netcool OMNIbus (IBM)
- GSKit Security Vulnerabilities addressed in IBM Tivoli Network Manager 3.8 and 3 (IBM)
- GSKit SSL/TLS handshake vulnerability in Tivoli Directory Server (CVE-2012-2190) (IBM)
- IBM Tivoli Network Manager IP 3.8.0 Fix Pack 7, 3.8.0-TIV-ITNMIP-FP0007 (IBM)
- IBM Tivoli Network Manager IP 3.9.0 Fix Pack 3, 3.9.0-TIV-ITNMIP-FP0003 (IBM)
- IBM Tivoli Storage Manager V6.2 Fix Pack 6 (6.2.6.000) Server Downloads (IBM)
- Multiple vulnerabilities in Product IBM Application Manager (IBM)
- Security Bulletin: IBM Informix Cryptographic Library Updates (CVE-2012-2190, CV (IBM)
- Security Bulletin: IBM SmartCloud Analytics - Log Analysis - Security exposures (IBM)
- Security Bulletin: IBM Tivoli Composite Application Manager for Transactions aff (IBM)
- Security Bulletin: IBM Tivoli Monitoring GSKIT vulnerabilities (CVE-2012-2203, C (IBM)
- Security Bulletin: swg21626749 Multiple GSKit Vulnerabilities in IBM DB2 (IBM)
- Security Bulletin: Tivoli Storage Manager Server GSKit Session ID Vulnerability (IBM)
- Security Vulnerabilities fixed in IBM WebSphere Application Server 8.5.0.1 (IBM)
- swg21606096: Security Bulletin: Security Vulnerabilities fixed in IBM WebSphere (IBM)
- Two security vulnerabilities found and fixed in WebSphere Business Events V7.0, (IBM)