Multiple IBM Products CVE-2015-0132 XML Entity Expansion Denial of Service Vulnerability
BID:73221
Info
Multiple IBM Products CVE-2015-0132 XML Entity Expansion Denial of Service Vulnerability
| Bugtraq ID: | 73221 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2015-0132 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 05 2015 12:00AM |
| Updated: | Mar 05 2015 12:00AM |
| Credit: | IBM |
| Vulnerable: |
IBM Rational Requirements Composer 4.0.7 IBM Rational Requirements Composer 4.0.5 IBM Rational Requirements Composer 4.0.4 IBM Rational Requirements Composer 4.0.3 IBM Rational Requirements Composer 4.0.1 IBM Rational Requirements Composer 3.0.1 6 iFix1 IBM Rational Requirements Composer 3.0.1 6 IBM Rational Requirements Composer 3.0.1 .2 IBM Rational Requirements Composer 2.0 4 IBM Rational Requirements Composer 2.0 2 IBM Rational Requirements Composer 2.0 1 IBM Rational Requirements Composer 4.0.7 iFix2 IBM Rational Requirements Composer 4.0.7 iFix1 IBM Rational Requirements Composer 4.0.6 IBM Rational Requirements Composer 4.0.2 IBM Rational Requirements Composer 4.0.0.2 IBM Rational Requirements Composer 4.0.0.1 IBM Rational Requirements Composer 4.0.0 IBM Rational Requirements Composer 3.0.1.6 iFix4 IBM Rational Requirements Composer 3.0.1.5 IBM Rational Requirements Composer 3.0.1.4 IBM Rational Requirements Composer 3.0.1.3 IBM Rational Requirements Composer 3.0.1.1 IBM Rational Requirements Composer 3.0.1 IBM Rational Requirements Composer 3.0 IBM Rational Requirements Composer 2.0.0.3 IBM Rational Requirements Composer 2.0 IBM Rational DOORS Next Generation 5.0.1 IBM Rational DOORS Next Generation 4.0.7 IBM Rational DOORS Next Generation 4.0.5 IBM Rational DOORS Next Generation 4.0.4 IBM Rational DOORS Next Generation 4.0.3 IBM Rational DOORS Next Generation 4.0.2 IBM Rational DOORS Next Generation 4.0.1 IBM Rational DOORS Next Generation 5.0 IBM Rational DOORS Next Generation 4.0.7 iFix2 IBM Rational DOORS Next Generation 4.0.7 iFix1 IBM Rational DOORS Next Generation 4.0.6 IBM Rational DOORS Next Generation 4.0.0 |
| Not Vulnerable: |
IBM Rational Requirements Composer 4.0.7 iFix3 IBM Rational Requirements Composer 3.0.1.6 iFix5 IBM Rational DOORS Next Generation 5.0.2 IBM Rational DOORS Next Generation 4.0.7 iFix3 |
Discussion
Multiple IBM Products CVE-2015-0132 XML Entity Expansion Denial of Service Vulnerability
Multiple IBM products are prone to a denial-of-service vulnerability.
Successful exploits may allow an attacker to cause an affected application to consume all available memory resources, resulting in a denial-of-service condition.
Multiple IBM products are prone to a denial-of-service vulnerability.
Successful exploits may allow an attacker to cause an affected application to consume all available memory resources, resulting in a denial-of-service condition.
Exploit / POC
Multiple IBM Products CVE-2015-0132 XML Entity Expansion Denial of Service Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Multiple IBM Products CVE-2015-0132 XML Entity Expansion Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Multiple IBM Products CVE-2015-0132 XML Entity Expansion Denial of Service Vulnerability
References:
References: