Vulnerability Bulletins

IBM Security Bulletin: TLS padding vulnerability affects IBM HTTP Server (CVE-2014-8730)

   
Affected software IBM
 
Transport Layer Security (TLS) padding vulnerability via a POODLE (Padding Oracle On Downgraded Legacy Encryption) like attack affects IBM HTTP Server. CVE(s): CVE-2014-8730 Affected product(s) and affected version(s): This vulnerability affects all versions and releases of IBM HTTP Server (powered by Apache) component in all editions of WebSphere Application Server and bundling products. Version 8.5.5 Version 8.5 Version 7.0 Version 6.1 Version 6.0 Refer to the following

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_tls_padding_vulnerability_affects_ibm_http_server_cve_2014_8730?lang=en_us