Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in OpenSSL affect IBM Worklight: CVE-2014-3509, CVE-2014-5139

   
Affected software IBM
 
There are multiple vulnerabilities in OpenSSL that is used by the optional FIPS 140-2 data-in-motion feature in IBM Worklight. These issues were disclosed on August 6, 2014 by the OpenSSL Project. CVE(s): CVE-2014-3509 and CVE-2014-5139 Affected product(s) and affected version(s): IBM Worklight Consumer Edition Versions 6.1.0.0, 6.1.0.1 and 6.1.0.2 IBM Worklight Enterprise Edition Versions 6.1.0.0, 6.1.0.1 and 6.1.0.2 IBM Worklight Foundation Consumer Edition Version 6.2.0.0 and

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_openssl_affect_ibm_worklight_cve_2014_3509_cve_2014_5139?lang=en_us