CVE-2013-5440: Infoleak
Published Dec 18, 2013
·Updated
IBM InfoSphere Information Server 8.0, 8.1, 8.5, 8.7, and 9.1 allows local users to obtain sensitive information in opportunistic circumstances by leveraging the presence of file content after a failed installation.
Affected Software
5 affected components
IBM InfoSphere Information Server=8.0
IBM InfoSphere Information Server=8.1
IBM InfoSphere Information Server=8.5
IBM InfoSphere Information Server=8.7
IBM InfoSphere Information Server=9.1
Event History
Dec 18, 2013
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-5440?
The severity of CVE-2013-5440 is classified as medium due to potential information disclosure risks.
2
How do I fix CVE-2013-5440?
To fix CVE-2013-5440, install the latest updates or patches provided by IBM for affected versions of InfoSphere Information Server.
3
Who is affected by CVE-2013-5440?
CVE-2013-5440 impacts local users of IBM InfoSphere Information Server versions 8.0, 8.1, 8.5, 8.7, and 9.1.
4
What type of information can be leaked due to CVE-2013-5440?
CVE-2013-5440 may allow local users to obtain sensitive installation file content that should not be accessible.
5
When was CVE-2013-5440 discovered?
CVE-2013-5440 was published on December 23, 2013.