IBM Security Access Manager for Web CVE-2014-0963 Remote Denial of Service Vulnerability
BID:67238
Info
IBM Security Access Manager for Web CVE-2014-0963 Remote Denial of Service Vulnerability
| Bugtraq ID: | 67238 |
| Class: | Design Error |
| CVE: |
CVE-2014-0963 |
| Remote: | Yes |
| Local: | No |
| Published: | May 06 2014 12:00AM |
| Updated: | Mar 19 2015 08:34AM |
| Credit: | IBM |
| Vulnerable: |
IBM Websphere Process Server for z/OS 7 IBM Websphere Portal 6.1 IBM WebSphere Lombardi Edition 7.2.0 IBM WebSphere Lombardi Edition 7.2 IBM Websphere Application Server 8.0 2 IBM Websphere Application Server 7.0 3 IBM Websphere Application Server 7.0 21 IBM Websphere Application Server 7.0 .2 IBM Websphere Application Server 7.0 .11 IBM Websphere Application Server 6.0.2 IBM Websphere Application Server 8.0.0.4 IBM Websphere Application Server 8.0 IBM Websphere Application Server 7.0.0.23 IBM Websphere Application Server 7.0.0.19 IBM Websphere Application Server 7.0.0.17 IBM Websphere Application Server 7.0.0.14 IBM Websphere Application Server 7.0.0.13 IBM Websphere Application Server 7.0.0.1 IBM Websphere Application Server 7.0.0.0 IBM Websphere Application Server 7.0 IBM Websphere Application Server 6.1 IBM Tivoli Provisioning Manager 5.1.1 IBM Tivoli NetView for z/OS 5.4.0 IBM Tivoli NetView for z/OS 5.3.0 IBM Tivoli NetView for z/OS 5.2.0 IBM Tivoli Access Manager for e-business 6.1 IBM Tivoli Access Manager for e-business 6.0 IBM Tivoli Access Manager for e-business 5.1 IBM Tivoli Access Manager for e-business 6.1.1 IBM Lotus Domino 8.5.3 IBM Lotus Domino 8.5.2 IBM Lotus Domino 8.5.1 IBM Lotus Domino 8.5 IBM Informix CSDK 3.50 IBM HTTP Server 7.0 .11 IBM HTTP Server 8.0.0.1 IBM HTTP Server 8.0 IBM HTTP Server 7.0.0.5 IBM HTTP Server 7.0.0.21 IBM HTTP Server 7.0.0.19 IBM HTTP Server 7.0.0.17 IBM HTTP Server 7.0.0.15 IBM HTTP Server 7.0.0.13 IBM HTTP Server 7.0 IBM DB2 Workgroup Server Edition 9.7 IBM DB2 Workgroup Server Edition 9.5 IBM DB2 Express Edition 9.7 IBM DB2 Express Edition 9.5 IBM DB2 Connect Unlimited Edition for System z 9.7 IBM DB2 Connect Unlimited Edition for System z 9.5 IBM DB2 Connect Unlimited Edition for System i 9.7 IBM DB2 Connect Unlimited Edition for System i 9.5 IBM DB2 Connect Enterprise Edition 9.7 IBM DB2 Connect Enterprise Edition 9.5 IBM DB2 Connect 9.7 IBM DB2 Connect 9.5 IBM DB2 Connect 9.1 IBM DB2 Connect 8.1 |
| Not Vulnerable: | |
Discussion
IBM Security Access Manager for Web CVE-2014-0963 Remote Denial of Service Vulnerability
IBM Security Access Manager for Web is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause CPU utilization to rapidly increase, leading to a denial-of-service condition.
IBM Security Access Manager for Web 7.0 and 8.0 are vulnerable.
IBM Security Access Manager for Web is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause CPU utilization to rapidly increase, leading to a denial-of-service condition.
IBM Security Access Manager for Web 7.0 and 8.0 are vulnerable.
Solution / Fix
IBM Security Access Manager for Web CVE-2014-0963 Remote Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.