IBM SPSS Modeler 14.2 through FP3 IF027, 15 through FP3 IF015, 16 through FP2 IF012, 17 through FP1 IF018, and 17.1 through IF008 includes unspecified cleartext data in memory dumps, which allows local users to obtain sensitive information by reading a dump file.
References
Link | Resource |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg1PI46224 | Vendor Advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg21975663 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2016-02-14 18:59
Updated : 2016-03-10 11:34
NVD link : CVE-2015-4991
Mitre link : CVE-2015-4991
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
ibm
- spss_modeler