IBM Security Bulletin: OpenSource MIT Kerberos Vulnerabilities affect IBM Security Access Manager for Web (CVE-2015-2695, CVE-2015-2696)

IBM Security Access Manager for Web is affected by MIT Kerberos vulnerabilities.



CVE(s): CVE-2015-2695, CVE-2015-2696


Affected product(s) and affected version(s):

IBM Security Access Manager for Web 7.0

IBM Security Access Manager for Web 8.0, all firmware versions

IBM Security Access Manager 9.0, all firmware versions



Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1WyXf8a
X-Force Database: http://ift.tt/23T5vyC
X-Force Database: http://ift.tt/1WyX9xr


from IBM Product Security Incident Response Team http://ift.tt/23T5HOp