Flash (Alert)
Abstract
The security issue was originally published as a high security vulnerability and based on our ongoing technical assessment we have reduced the severity to medium. The vulnerability is in the mrabout.dll Active X control for Data Collections products. The products/versions that are affected are listed below and fixes are available below.
Content
Products Affected:
Dimensions 5.5
Data Collection 5.6 and 6.0
Description:
ZDI-CAN-1295: IBM SPSS Vulnerable issue in SetLicenseInfoEx() method exposed by the mraboutb.dll ActiveX Control.
|
As of 9/1/2011, IBM has not received any reports of customer issues related to this security vulnerability. The vulnerability was identified and reported to IBM by a security testing company, TippingPoint.
Solutions:
There is an IBM fixpack available for each release. The IBM product fixpacks should be implemented as soon as practical and your business needs dictate.
Affected Product/Version and Applicable Fixes:
|
Version
|
Product offering
|
Available fixpack or risk mitigation
|
|
5.5
|
Dimensions Data Model | Dimensions 5.5 P7 HF7 |
|
5.6
|
dc Data Model | Data Collection 5.6 P5 HF45 |
|
6.0
|
dc Data Model | Data Collection 6 FixPack 2 HF10 |
Rate this page:
Copyright and trademark information
IBM, the IBM logo and ibm.com are trademarks of International Business Machines Corp., registered in many jurisdictions worldwide. Other product and service names might be trademarks of IBM or other companies. A current list of IBM trademarks is available on the Web at "Copyright and trademark information" at www.ibm.com/legal/copytrade.shtml.