IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, 6.3 before iFix 37, 6.3.1 before iFix 11, and 6.4 before iFix 2 does not prevent caching of documents retrieved in SSL sessions, which allows physically proximate attackers to obtain sensitive information by leveraging an unattended workstation.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2019
Reference (s):
- BID:75437
- URL: http://www.securityfocus.com/bid/75437
- http://www-01.ibm.com/support/docview.wss?uid=swg21960659
- SECTRACK:1032734
- URL: http://www.securitytracker.com/id/1032734

