Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in GSKit fixed in IBM Security/Tivoli Directory Server (CVE-2015-0138, CVE-2015-0159)

   
Affected software IBM
 
GSKit is an IBM component that is used by IBM Security/Tivoli Directory Server. The GSKit that is shipped with IBM Security/Tivoli Directory Server contains multiple security vulnerabilities including the “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability, IBM Security/Tivoli Directory Server has addressed the applicable CVE. CVE(s): CVE-2015-0138 and CVE-2015-0159 Affected product(s) and affected version(s): IBM Tivoli Directory Server

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_gskit_fixed_in_ibm_security_tivoli_directory_server_cve_2015_0138_cve_2015_0159?lang=en_us