IBM Security Bulletin: IBM Security Access Manager for Mobile is affected by vulnerabilities in NTP
The Network Time Protocol (NTP) is used to synchronize a computer’s time with another referenced time source. These packages include the ntpd service which continuously adjusts system time and utilities used to query and configure the ntpd service. IBM Security Access Manager for Mobile is affected by vulnerabilities in NTP.
CVE(s): CVE-2015-5194, CVE-2015-5195, CVE-2015-5219, CVE-2015-7691, CVE-2015-7692, CVE-2015-7701, CVE-2015-7702, CVE-2015-7703, CVE-2015-7977, CVE-2015-7978, CVE-2015-7979, CVE-2016-1547, CVE-2016-1548, CVE-2016-1550, CVE-2016-2518
Affected product(s) and affected version(s):
IBM Security Access Manager for Mobile 8.0, all firmware versions
IBM Security Access Manager 9.0, all firmware versions
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2c5yikk
X-Force Database: http://ift.tt/2aLr2r0
X-Force Database: http://ift.tt/2axFNRC
X-Force Database: http://ift.tt/2aLraa8
X-Force Database: http://ift.tt/1XbCMXn
X-Force Database: http://ift.tt/2aLrohw
X-Force Database: http://ift.tt/2axFUfS
X-Force Database: http://ift.tt/2aLrzJK
X-Force Database: http://ift.tt/1UrnSIt
X-Force Database: http://ift.tt/1Q1mFcj
X-Force Database: http://ift.tt/2aLqPUS
X-Force Database: http://ift.tt/1Q1ol5w
X-Force Database: http://ift.tt/28MbfXh
X-Force Database: http://ift.tt/28PlwWo
X-Force Database: http://ift.tt/28Plttu
X-Force Database: http://ift.tt/28MbhOU
from IBM Product Security Incident Response Team http://ift.tt/2c5zHXZ