IBM Security Bulletin: A vulnerability in Apache Tomcat affects Rational Insight (CVE-2015-5174)

The Rational Insight is shipped with a version of the Apache Tomcat web server which contains a security vulnerability that could have a potential security impact.

CVE(s): CVE-2015-5174

Affected product(s) and affected version(s):

Principal Product and Version(s)Affected Supporting Product(s) and Version(s)
Rational Insight 1.1, 1.1.1, 1.1.1.1 and 1.1.1.2Cognos BI 10.1.1
Rational Insight 1.1.1.3Cognos BI 10.2.1
Rational Insight 1.1.1.4, 1.1.1.5 and 1.1.1.6Cognos BI 10.2.1 Fix pack 2
Jazz Reporting Service 5.0, 5.0.1 and 5.0.2
Rational Insight 1.1.1.7Cognos BI 10.2.1 Fix pack 2
Jazz Reporting Service 6.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/29yRHra
X-Force Database: http://ift.tt/1rhWylT



from IBM Product Security Incident Response Team http://ift.tt/2a2ik64