IBM InfoSphere DataStage Arbitrary Code Execution Vulnerability (CVE-2015-1900)
IBM InfoSphere DataStage Arbitrary Code Execution Vulnerability (CVE-2015-1900)
Release date:
Updated on:
Affected Systems:
IBM InfoSphere DataStage 9.1
IBM InfoSphere DataStage 8.7
IBM InfoSphere DataStage 8.5
IBM InfoSphere DataStage 8.1
IBM InfoSphere DataStage 11.3-11.3.1.2
Description:
Bugtraq id: 75481
CVE (CAN) ID: CVE-2015-1900
IBM InfoSphere DataStage is a core product module of the InfoSphere Information Server Information Integration Platform.
IBM InfoSphere DataStage 8.1, 8.5, 8.7, 9.1, 11.3-11.3.1.2 (UNIX) has a security vulnerability that allows remote attackers to exploit this vulnerability to write arbitrary files and obtain root privileges.
<* Source: IBM ([email protected])
*>
Suggestion:
Vendor patch:
IBM
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www-01.ibm.com/support/docview.wss? Uid = swg24252280
This article permanently updates the link address: