<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.ca.com/~d/styles/itemcontent.css"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0"><channel><title>CA Security Response Blog</title><link>http://community.ca.com/blogs/casecurityresponseblog/default.aspx</link><description /><dc:language>en</dc:language><generator>CommunityServer 2007 SP1 (Build: 20510.895)</generator><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.ca.com/CaSecurityResponseBlog" /><feedburner:info uri="casecurityresponseblog" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><image><link>http://www.ca.com</link><url>http://www.ca.com/images/global/logo_172900.gif</url><title>CA</title></image><feedburner:emailServiceId>CaSecurityResponseBlog</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><item><title>Update: CA20130213-01: Security Notice for CA ControlMinder</title><link>http://feeds.ca.com/~r/CaSecurityResponseBlog/~3/ZYFiR5ogL48/updated-ca20130213-01-security-notice-for-ca-controlminder.aspx</link><pubDate>Mon, 29 Apr 2013 15:46:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:10508</guid><dc:creator>Kevin Kotas</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/04/29/updated-ca20130213-01-security-notice-for-ca-controlminder.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ControlMinder/default.aspx">ControlMinder</category><description>We published a new version of the following notice today. ControlMinder customers are urged to review the latest recommendations and release notes.CA20130213-01: Security Notice for CA ControlMinder
https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID={A6F2B559-F02D-4FCE-B3BF-C743219D4A27} 

Kevin Kotas
Director, CA Technologies Product Vulnerability Response Team 

The opinions...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.feedburner.com/~r/CaSecurityResponseBlog/~4/ZYFiR5ogL48" height="1" width="1"/&gt;</description><feedburner:origLink>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/04/29/updated-ca20130213-01-security-notice-for-ca-controlminder.aspx</feedburner:origLink></item><item><title>CA20130319-01: Security Notice for SiteMinder products using SAML</title><link>http://feeds.ca.com/~r/CaSecurityResponseBlog/~3/-4WjRLZrHyk/ca20130319-01-security-notice-for-siteminder-products-using-saml.aspx</link><pubDate>Wed, 20 Mar 2013 00:53:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:10286</guid><dc:creator>Kevin Kotas</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/03/19/ca20130319-01-security-notice-for-siteminder-products-using-saml.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2013-2279/default.aspx">CVE-2013-2279</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Federation+Manager/default.aspx">Federation Manager</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/SAML/default.aspx">SAML</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/SiteMinder+SPS/default.aspx">SiteMinder SPS</category><description>I published a new security notice today for SiteMinder products. The notice concerns a high risk set of vulnerabilities that deal with SAML. We are not currently&amp;nbsp;aware of any exploitation of these vulnerabilities. Solutions are available.

CA20130319-01: Security Notice for SiteMinder products using...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.feedburner.com/~r/CaSecurityResponseBlog/~4/-4WjRLZrHyk" height="1" width="1"/&gt;</description><feedburner:origLink>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/03/19/ca20130319-01-security-notice-for-siteminder-products-using-saml.aspx</feedburner:origLink></item><item><title>CA20130213-01: Security Notice for CA ControlMinder</title><link>http://feeds.ca.com/~r/CaSecurityResponseBlog/~3/lahwRrwRdw4/ca20130213-01-security-notice-for-ca-controlminder.aspx</link><pubDate>Wed, 13 Feb 2013 16:27:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:10083</guid><dc:creator>Kevin Kotas</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/02/13/ca20130213-01-security-notice-for-ca-controlminder.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2010-0738/default.aspx">CVE-2010-0738</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/Sanehdeep+Singh/default.aspx">Sanehdeep Singh</category><description>A new security notice for CA ControlMinder is now available. The notice concerns a publicly known and high risk vulnerability for&amp;nbsp;the bundled&amp;nbsp;JBoss Application Server. Fixes are available. See the notice below for more information.



CA20130213-01: Security Notice for CA...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.feedburner.com/~r/CaSecurityResponseBlog/~4/lahwRrwRdw4" height="1" width="1"/&gt;</description><feedburner:origLink>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/02/13/ca20130213-01-security-notice-for-ca-controlminder.aspx</feedburner:origLink></item><item><title>Update: CA20121220-01: Security Notice for CA IdentityMinder</title><link>http://feeds.ca.com/~r/CaSecurityResponseBlog/~3/czA1my7Whx4/update-ca20121220-01-security-notice-for-ca-identityminder.aspx</link><pubDate>Fri, 18 Jan 2013 23:00:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:9956</guid><dc:creator>Ken Williams</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/01/18/update-ca20121220-01-security-notice-for-ca-identityminder.aspx#comments</comments><description>A recently published security notice for CA IdentityMinder (CA20121220-01: Security Notice for CA IdentityMinder) has been updated.&amp;nbsp; The update includes a major revision to the section entitled &amp;quot;How to determine if the installation is affected&amp;quot;.

Revised content:
How to determine if the installation is affected

All versions of CA IdentityMinder r12.0, r12.5 prior to SP15, and...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.feedburner.com/~r/CaSecurityResponseBlog/~4/czA1my7Whx4" height="1" width="1"/&gt;</description><feedburner:origLink>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/01/18/update-ca20121220-01-security-notice-for-ca-identityminder.aspx</feedburner:origLink></item><item><title>Update: CA20121018-01: Security notice for CA ARCserve Backup</title><link>http://feeds.ca.com/~r/CaSecurityResponseBlog/~3/bwkrwdjweOM/update-ca20121018-01-security-notice-for-ca-arcserve-backup.aspx</link><pubDate>Thu, 03 Jan 2013 14:28:00 GMT</pubDate><guid isPermaLink="false">8d07cc69-a460-48f1-844d-25b05ba87317:9889</guid><dc:creator>Kevin Kotas</dc:creator><slash:comments>0</slash:comments><comments>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/01/03/update-ca20121018-01-security-notice-for-ca-arcserve-backup.aspx#comments</comments><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/ARCserve+Backup/default.aspx">ARCserve Backup</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CA20121018-01/default.aspx">CA20121018-01</category><category domain="http://community.ca.com/blogs/casecurityresponseblog/archive/tags/CVE-2012-2971/default.aspx">CVE-2012-2971</category><description>We have updated the patches in security notice CA20121018-01. The patches for ARCserve Backup r15 and r16 did not fully correct the vulnerability in the NAS option. The updated patches contain the vulnerability fixes from the original patches and add a fix specifically to the NAS option. Customers are urged to install the patches at the earliest convenience. See the notice below for patch...&lt;br/&gt;
&lt;br/&gt;
&amp;nbsp;&lt;img src="http://feeds.feedburner.com/~r/CaSecurityResponseBlog/~4/bwkrwdjweOM" height="1" width="1"/&gt;</description><feedburner:origLink>http://community.ca.com/blogs/casecurityresponseblog/archive/2013/01/03/update-ca20121018-01-security-notice-for-ca-arcserve-backup.aspx</feedburner:origLink></item></channel></rss>
