Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in RC4 stream cipher affects IBM Rational RequisitePro (CVE-2015-2808)

   
Affected software IBM
 
The RC4 “Bar Mitzvah” Attack for SSL/TLS affects IBM Rational RequisitePro. CVE(s): CVE-2015-2808 Affected product(s) and affected version(s): IBM Rational RequisitePro versions: Version Status 7.1.4.x (all versions) Affected 7.1.3.x (all versions) Affected 7.1.2.x (all versions) Affected 7.1.1.x (all versions) Affected 7.1.0.x (all versions) Affected You are vulnerable if your use of Rational RequisitePro includes any of these configurations:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_rc4_stream_cipher_affects_ibm_rational_requisitepro_cve_2015_2808?lang=en_us