Vulnerability Bulletins

IBM Security Bulletin : Multiple vulnerabilities in IBM Java Runtime affect IBM Integration Bus and WebSphere Message Broker (CVE-2015-0138)

   
Affected software IBM
 
The “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability affects IBM® Runtime Environment Java™ Technology Edition 6SR16 (and earlier) that is used by WebSphere Message Broker and the IBM® Runtime Environment Java™ Technology Edition 7SR8 (and earlier) that is used by IBM Integration Bus. CVE(s): CVE-2015-0138 Affected product(s) and affected version(s): WebSphere Message Broker V7.0 and V8.0 and IBM Integration Bus V9.0

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_java_runtime_affect_ibm_integration_bus_and_websphere_message_broker_cve_2015_0138?lang=en_us