IBM Security Bulletin: File vulnerabilities affect IBM SmartClound Entry
IBM SmartCloud Entry is vulnerable to file vulnerabilities, An attacker could exploit these vulnerabilities to use a specially-crafted file to consume all available CPU resources, cause a denial of service, execute arbitrary code, or cause applications/executables to crash. CVE-2014-3538 CVE-2014-3587 CVE-2014-3710 CVE-2014-8116 CVE-2014-8117 CVE-2014-9620 CVE-2014-9653
CVE(s): CVE-2014-3538, CVE-2014-3587, CVE-2014-3710, CVE-2014-8116, CVE-2014-8117, CVE-2014-9620, CVE-2014-9653
Affected product(s) and affected version(s):
IBM SmartCloud Entry 2.2.0 through 2.2.0.4 Appliance fix pack 6
IBM SmartCloud Entry 2.3.0 through 2.3.0.4 Appliance fix pack 6
IBM SmartCloud Entry 2.4.0 through 2.4.0.4 Appliance fix pack 6
IBM SmartCloud Entry 3.1.0 through 3.1.0.4 Appliance fix pack 21
IBM SmartCloud Entry 3.2.0 through 3.2.0.4 Appliance fix pack 21
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2cgaW7l
X-Force Database: http://ift.tt/2bZYWbX
X-Force Database: http://ift.tt/2c8VRsf
X-Force Database: http://ift.tt/2bZYUkp
X-Force Database: http://ift.tt/2c8VgXs
X-Force Database: http://ift.tt/2bZYzxZ
X-Force Database: http://ift.tt/2c8X6r4
X-Force Database: http://ift.tt/2bZXxlN
from IBM Product Security Incident Response Team http://ift.tt/2cgbbPK