IBM Support

Security Bulletin: A security vulnerability has been identified in IBM WebSphere Applicaiton Server shipped with Rational RequisitePro (CVE-2014-0114)

Created by Carlos Alfonso… on
Published URL:
https://www.ibm.com/support/pages/node/511925
511925

Security Bulletin


Summary

A security vulnerability has been identified in WebSphere Application Server shipped with IBM Rational RequisitePro.

Vulnerability Details

Subscribe to My Notifications to be notified of important product support alerts like this.
  • Follow this link for more information (requires login with your IBM ID)

Review Security Bulletin: Classloader Manipulation Vulnerability in IBM WebSphere Application Server for vulnerability details.

Affected Products and Versions

IBM Rational RequisitePro versions 7.1.0 through 7.1.1.9, 7.1.2 through 7.1.2.13.01 and 7.1.3 through 7.1.3.10.01 ship with or require versions of WebSphere Application Server that are affected.

Remediation/Fixes

Review the Remediation/Fixes section of Security Bulletin: Classloader Manipulation Vulnerability in IBM WebSphere Application Server for links to the the downloads to resolve this issue.

Review technote 1390803: Update the WebSphere Application Server components in Rational ClearCase and Rational ClearQuest 7.1 for instructions on updating WebSphere Application Server.

Workarounds and Mitigations

None

Get Notified about Future Security Bulletins

References

Off

Acknowledgement

None

Change History

18 August 2014: Original copy published

*The CVSS Environment Score is customer environment specific and will ultimately impact the Overall CVSS Score. Customers can evaluate the impact of this vulnerability in their environments by accessing the links in the Reference section of this Security Bulletin.

Disclaimer

Review the IBM security bulletin disclaimer and definitions regarding your responsibilities for assessing potential impact of security vulnerabilities to your environment.

Internal Use Only

PSIRT Adv. 1747, Record 37502.

[{"Product":{"code":"SSSHCT","label":"Rational RequisitePro"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":"Security","Platform":[{"code":"PF033","label":"Windows"}],"Version":"7.1;7.1.0.1;7.1.0.2;7.1.1;7.1.1.1;7.1.1.2;7.1.1.3;7.1.1.4;7.1.1.5;7.1.1.6;7.1.1.7;7.1.1.8;7.1.1.9;7.1.2;7.1.2.1;7.1.2.10;7.1.2.11;7.1.2.12;7.1.2.13;7.1.2.2;7.1.2.3;7.1.2.4;7.1.2.5;7.1.2.6;7.1.2.7;7.1.2.8;7.1.2.9;7.1.3;7.1.3.1;7.1.3.10;7.1.3.2;7.1.3.3;7.1.3.4;7.1.3.5;7.1.3.6;7.1.3.7;7.1.3.8;7.1.3.9","Edition":"","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
16 June 2018

UID

swg21674745