Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in IBM Java SDK affect IBM Notes and Domino

   
Affected software IBM
 
There are multiple vulnerabilities in IBM SDK Java Technology Edition version 1.6 SR16FP1 that is used by IBM Notes and Domino. This also includes a fix for the Padding Oracle On Downgraded Legacy Encryption (POODLE) SSLv3 vulnerability (CVE-2014-3566). These were disclosed as part of the IBM Java SDK updates in October 2014. See below for links to installers for the standalone Java patches. CVE(s): CVE-2014-3566, CVE-2014-6513, CVE-2014-6456, CVE-2014-6503, CVE-2014-6532, CVE-2014-4288,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_java_sdk_affect_ibm_notes_and_domino?lang=en_us