Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in IBM WebSphere Application Server affects Tivoli Workload Scheduler (CVE-2015-0138)


System information

   
Affected software IBM

Description

The “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability affects IBM embedded WebSphere Application Server that is used by Tivoli Workload Scheduler. CVE(s): CVE-2015-0138 Affected product(s) and affected version(s): Tivoli Workload Scheduler is potentially impacted by the listed vulnerabilities since they potentially affect secure communications between eWAS and subcomponents through Java exposures. The issues have been fixed updating Java

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_ibm_websphere_application_server_affects_tivoli_workload_scheduler_cve_2015_0138?lang=en_us

Standar resources

Property Value
CVE CVE-2015-0138 ,CVE-2015-1909 and CVE-2015-1899.

Version history

Version Comments Date
1.0 Advisory issued 2015-04-16
Ministerio de Defensa
CNI
CCN
CCN-CERT