Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in GSKit affect IBM Security Access Manager for Mobile (CVE-2015-0159, CVE-2015-0138, CVE-2014-6221)

   
Affected software IBM
 
GSKit is an IBM component that is used by IBM Security Access Manager for Mobile. The GSKit that is shipped with IBM Security Access Manager for Mobile contains multiple security vulnerabilities including the “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability. IBM Security Access Manager for Mobile has addressed the applicable CVEs. CVE(s): CVE-2014-6221, CVE-2015-0138 and CVE-2015-0159 Affected product(s) and affected version(s): IBM

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_gskit_affect_ibm_security_access_manager_for_mobile_cve_2015_0159_cve_2015_0138_cve_2014_6221?lang=en_us