Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in IBM WebSphere Application Server affects IBM MQ Light (CVE-2015-0138)

   
Affected software IBM
 
The “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability affects IBM WebSphere Application Server Liberty Profile Version 8.5.5 that is used by IBM MQ Light. CVE(s): CVE-2015-0138 Affected product(s) and affected version(s): The vulnerability affects users of IBM MQ Light V1.0 and V1.0.0.1 on all platforms. Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_ibm_websphere_application_server_affects_ibm_mq_light_cve_2015_0138?lang=en_us