IBM WebSphere Application Server CVE-2014-0964 Denial of Service Vulnerability
BID:67322
Info
IBM WebSphere Application Server CVE-2014-0964 Denial of Service Vulnerability
| Bugtraq ID: | 67322 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-0964 |
| Remote: | Yes |
| Local: | No |
| Published: | May 07 2014 12:00AM |
| Updated: | Nov 11 2014 12:57AM |
| Credit: | IBM |
| Vulnerable: |
IBM WebSphere Sensor Events 7.0 IBM Websphere Portal 6.1 IBM Websphere Application Server 6.1 .9 IBM Websphere Application Server 6.1 .8 IBM Websphere Application Server 6.1 .7 IBM Websphere Application Server 6.1 .6 IBM Websphere Application Server 6.1 .5 IBM Websphere Application Server 6.1 .4 IBM Websphere Application Server 6.1 .33 IBM Websphere Application Server 6.1 .32 IBM Websphere Application Server 6.1 .3 IBM Websphere Application Server 6.1 .25 IBM Websphere Application Server 6.1 .23 IBM Websphere Application Server 6.1 .22 IBM Websphere Application Server 6.1 .21 IBM Websphere Application Server 6.1 .20 IBM Websphere Application Server 6.1 .2 IBM Websphere Application Server 6.1 .19 IBM Websphere Application Server 6.1 .18 IBM Websphere Application Server 6.1 .17 IBM Websphere Application Server 6.1 .15 IBM Websphere Application Server 6.1 .14 IBM Websphere Application Server 6.1 .13 IBM Websphere Application Server 6.1 .12 IBM Websphere Application Server 6.1 .11 IBM Websphere Application Server 6.1 .10 IBM Websphere Application Server 6.1 .1 IBM Websphere Application Server 6.0.2 .9 IBM Websphere Application Server 6.0.2 .7 IBM Websphere Application Server 6.0.2 .5 IBM Websphere Application Server 6.0.2 .39 IBM Websphere Application Server 6.0.2 .35 IBM Websphere Application Server 6.0.2 .33 IBM Websphere Application Server 6.0.2 .31 IBM Websphere Application Server 6.0.2 .3 IBM Websphere Application Server 6.0.2 .29 IBM Websphere Application Server 6.0.2 .27 IBM Websphere Application Server 6.0.2 .25 IBM Websphere Application Server 6.0.2 .24 IBM Websphere Application Server 6.0.2 .23 IBM Websphere Application Server 6.0.2 .22 IBM Websphere Application Server 6.0.2 .21 IBM Websphere Application Server 6.0.2 .17 IBM Websphere Application Server 6.0.2 .15 IBM Websphere Application Server 6.0.2 .13 IBM Websphere Application Server 6.0.2 .11 IBM Websphere Application Server 6.0.2 .1 IBM Websphere Application Server 6.0.2 IBM Websphere Application Server 6.1.0.45 IBM Websphere Application Server 6.1.0.43 IBM Websphere Application Server 6.1.0.39 IBM Websphere Application Server 6.1.0.37 IBM Websphere Application Server 6.1.0.35 IBM Websphere Application Server 6.1.0.34 IBM Websphere Application Server 6.1.0.33 IBM Websphere Application Server 6.1.0.31 IBM Websphere Application Server 6.1.0.29 IBM Websphere Application Server 6.1.0.27 IBM Websphere Application Server 6.1 IBM Websphere Application Server 6.0.2.43 IBM Websphere Application Server 6.0.2.41 IBM Websphere Application Server 6.0.2.19 IBM Tivoli Federated Identity Manager Business Gateway 6.2 IBM Tivoli Federated Identity Manager 6.2 IBM Tivoli Access Manager for e-business 6.1.1 |
| Not Vulnerable: | |
Discussion
IBM WebSphere Application Server CVE-2014-0964 Denial of Service Vulnerability
IBM WebSphere application server is prone to a denial-of-service vulnerability.
Remote attackers can exploit this issue to cause denial-of-service conditions for legitimate users.
IBM WebSphere Application Server 6.1.0.0 through 6.1.0.47 and 6.0.2.0 through 6.0.2.43 are vulnerable.
IBM WebSphere application server is prone to a denial-of-service vulnerability.
Remote attackers can exploit this issue to cause denial-of-service conditions for legitimate users.
IBM WebSphere Application Server 6.1.0.0 through 6.1.0.47 and 6.0.2.0 through 6.0.2.43 are vulnerable.
Exploit / POC
IBM WebSphere Application Server CVE-2014-0964 Denial of Service Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of any recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of any recent information, please mail us at: [email protected].
Solution / Fix
IBM WebSphere Application Server CVE-2014-0964 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
IBM WebSphere Application Server CVE-2014-0964 Denial of Service Vulnerability
References:
References: