Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in IBM Java runtime affect ClearQuest Eclipse (CVE-2015-0138)


System information

   
Affected software IBM

Description

The “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability affects IBM® Runtime Environment Java™ Technology Edition that is used by ClearQuest Eclipse client. CVE(s): CVE-2015-0138 Affected product(s) and affected version(s): ClearQuest Eclipse clients that use Report Designer, run remote reports on servers using secure connections, or use the embedded browser to connect to secure web sites. ClearQuest Eclipse Status 8.0.1

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_ibm_java_runtime_affect_clearquest_eclipse_cve_2015_0138?lang=en_us

Standar resources

Property Value
CVE CVE-2015-0138 ,CVE-2015-0159 ,CVE-2015-0410 ,CVE-2015-0400 ,CVE-2014-6593 ,CVE-2014-0130 and CVE-2014-7829.

Version history

Version Comments Date
1.0 Advisory issued 2015-04-18
Ministerio de Defensa
CNI
CCN
CCN-CERT