CVE-2014-0963

Published May 8, 2014

Last updated 7 years ago

Overview

Description
The Reverse Proxy feature in IBM Global Security Kit (aka GSKit) in IBM Security Access Manager (ISAM) for Web 7.0 before 7.0.0-ISS-SAM-IF0006 and 8.0 before 8.0.0.3-ISS-WGA-IF0002 allows remote attackers to cause a denial of service (infinite loop) via crafted SSL messages.
Source
psirt@us.ibm.com
NVD status
Modified

Social media

Hype score
Not currently trending

Risk scores

CVSS 2.0

Type
Primary
Base score
7.1
Impact score
6.9
Exploitability score
8.6
Vector string
AV:N/AC:M/Au:N/C:N/I:N/A:C

Weaknesses

nvd@nist.gov
CWE-399

Evaluator

Comment
-
Impact
Per: http://www-01.ibm.com/support/docview.wss?uid=swg21672192 "Affected Products and Versions All versions of IBM Security Access Manager for Web, both software and appliance: 7.0, 8.0"
Solution
Per: http://www-01.ibm.com/support/docview.wss?uid=swg21672192 "Affected Products and Versions All versions of IBM Security Access Manager for Web, both software and appliance: 7.0, 8.0"

Configurations