Vulnerability Bulletins |
IBM Security Bulletin : IBM Websphere Message Broker and IBM Integration Bus are affected by SSLv3 Vulnerability (CVE-2014-3566) |
|
| Affected software | IBM |
|
SSLv3 contains a vulnerability that has been referred to as the Padding Oracle On Downgraded Legacy Encryption (POODLE) attack. SSLv3 is enabled by default in IBM WebSphere Message Broker and IBM Integration Bus. CVE(s): CVE-2014-3566 Affected product(s) and affected version(s): IBM Websphere Message Broker V7.0 and V8.0 IBM Integration Bus V9.0 IBM WebSphere Message Broker Hypervisor Edition V8.0 IBM Integration Bus Hypervisor Edition V9.0 IBM SOA Policy pattern for Red hat Enterprise More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_websphere_message_broker_and_ibm_integration_bus_are_affected_by_sslv3_vulnerability_cve_2014_3566?lang=en_us |
|






