Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in RC4 stream cipher affects WebSphere Dashboard Framework (CVE-2015-2808)

   
Affected software IBM
 
The RC4 “Bar Mitzvah” Attack for SSL/TLS affects the Java JREs bundled with WebSphere Dashboard Framework. These JREs are used to run the copies of WebSphere Community Edition (WASCE) and Eclipse bundled with WebSphere Dashboard Framework. CVE(s): CVE-2015-2808 Affected product(s) and affected version(s): All supported versions of WebSphere Dashboard Framework. Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_rc4_stream_cipher_affects_websphere_dashboard_framework_cve_2015_2808?lang=en_us