Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM Cognos Planning (CVE-2014-3567, CVE-2014-3568)


System information

   
Affected software IBM

Description

OpenSSL vulnerabilities along with SSL 3 Fallback protection (TLS_FALLBACK_SCSV) were disclosed on October 15, 2014 by the OpenSSL Project. OpenSSL is used by IBM Cognos Planning. IBM Cognos Planning has addressed the applicable CVEs and included the SSL 3.0 Fallback protection (TLS_FALLBACK_SCSV) provided by OpenSSL CVE(s): CVE-2014-3567 and CVE-2014-3568 Affected product(s) and affected version(s): IBM Cognos Planning 10.1 IBM Cognos Planning 10.1.1 Refer to the following

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_affect_ibm_cognos_planning_cve_2014_3567_cve_2014_3568?lang=en_us

Standar resources

Property Value
CVE CVE-2014-3567 ,CVE-2014-3568 ,CVE-2014-3004 ,CVE-2015-0278 and CVE-2015-0138.

Version history

Version Comments Date
1.0 Advisory issued 2015-04-16
Ministerio de Defensa
CNI
CCN
CCN-CERT