Vulnerability Bulletins |
IBM Security Bulletin: Vulnerabilities in OpenSSL affecting Sametime Unified Telephony (OpenSSL: CVE-2014-3569, CVE-2014-3570, CVE-2014-3572, CVE-2014-8725, CVE-2015-0204, CVE-2015-0205) |
|
| Affected software | IBM |
|
OpenSSL vulnerabilities were disclosed on January 8, 2015 by the OpenSSL Project. This includes “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability. OpenSSL is used by Sametime Unified Telephony has addressed the applicable CVEs. CVE(s): CVE-2014-3569, CVE-2014-3570, CVE-2014-3572, CVE-2014-8275, CVE-2015-0204 and CVE-2015-0205 Affected product(s) and affected version(s): Sametime Unified Telephony 8.5.2 and 9. Refer to the following More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_affecting_sametime_unified_telephony_openssl_cve_2014_3569_cve_2014_3570_cve_2014_3572_cve_2014_8725_cve_2015_0204_cve_2015_0205?lang=en_us |
|






