Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL affect the Cordova platform packaged with Rational Application Developer affecting Rational Developer for i and Rational Developer for AIX and Linux


System information

   
Affected software IBM

Description

OpenSSL vulnerabilities were disclosed on January 8, 2015 by the OpenSSL Project. This includes “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability. OpenSSL is used by ratlperl for SSL communications. Rational RequisitePro has addressed the applicable CVEs. CVE(s): CVE-2014-3570, CVE-2014-3572 and CVE-2015-0204 Affected product(s) and affected version(s): IBM Rational RequisitePro versions: Version Status 7.1.4 through 7.1.4.7

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_affect_the_cordova_platform_packaged_with_rational_application_developer_affecting_rational_developer_for_i_and_rational_developer_for_aix_and_linu

Standar resources

Property Value
CVE

Version history

Version Comments Date
1.0 Advisory issued 2015-04-16
Ministerio de Defensa
CNI
CCN
CCN-CERT