Multiple IBM product Denial of Service Vulnerabilities (CVE-2014-8926)
Multiple IBM product Denial of Service Vulnerabilities (CVE-2014-8926)
Release date:
Updated on:
Affected Systems:
IBM License Metric Tool 9
IBM License Metric Tool 7.5
IBM License Metric Tool 7.2.2
Description:
Bugtraq id: 74780
CVE (CAN) ID: CVE-2014-8926
IBM manufactures and sells computer hardware and software and provides consulting services for system architecture and network hosting.
IBM License Metric Tool 7.2.2, 7.5, 9; Endpoint Manger for Software Use Analysis 9; Tivoli Asset Discovery for Distributed 7.2.2. In version 7.5, CIT 2.7.0.2050 or earlier has a security vulnerability, remote attackers can exploit this vulnerability to initiate DoS attacks by constructing XML queries.
<* Source: IBM ([email protected])
*>
Suggestion:
Vendor patch:
IBM
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www-01.ibm.com/support/docview.wss? Uid = swg21882695
This article permanently updates the link address: