IBM Support

Security Bulletin: Security vulnerability in IBM TXSeries for Multiplatforms (CVE-2013-0490)

Flashes (Alerts)


Abstract

An unspecified vulnerability in IBM TXSeries for Multiplatforms could allow local attackers to execute arbitrary commands via unknown vectors.

Content


VULNERABILITY DETAILS:

CVE ID: CVE-2013-0490
CVSS:
CVSS Base Score: 7.2
CVSS Temporal Score: See [
https://exchange.xforce.ibmcloud.com/vulnerabilities/81948] for the current score
CVSS Environmental Score*: Undefined
CVSS Vector:
(AV:L/AC:L/Au:N/C:C/I:C/A:C)

AFFECTED PRODUCTS:
· TXSeries for Multiplatforms versions 7.1 on AIX

REMEDIATION:
The fix is available for downloads from the following links:


TXSeries release 7.1:

Apply TXSeries 7.1 Fixpack 5 or later from Fix central.




Workaround(s): None
Mitigation(s): None

REFERENCES:
· On-line Calculator V2 (http://nvd.nist.gov/cvss.cfm?calculator&adv&version=2)
· CVE-2013-0490 (http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0490)
· X-Force Vulnerability Database (https://exchange.xforce.ibmcloud.com/vulnerabilities/81948)


RELATED INFORMATION:
· IBM Secure Engineering Web Portal
· IBM Product Security Incident Response Blog

ACKNOWLEDGEMENT: None

[{"Product":{"code":"SSAL2T","label":"TXSeries for Multiplatforms"},"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Component":"CICS","Platform":[{"code":"PF002","label":"AIX"}],"Version":"7.1","Edition":"","Line of Business":{"code":"LOB35","label":"Mainframe SW"}}]

Document Information

Modified date:
25 September 2022

UID

swg21626159