Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in RC4 stream cipher affects Sterling External Authentication Server (CVE-2015-2808)

   
Affected software IBM
 
The RC4 “Bar Mitzvah” Attack for SSL/TLS affects Sterling External Authentication Server. CVE(s): CVE-2015-2808 Affected product(s) and affected version(s): Sterling External Authentication Server 2.4.2.0 (GA Version) Sterling External Authentication Server 2.4.1.0 through 2.4.1.8 iFix 4 Sterling External Authentication Server 2.4.0.0 through 2.4.0.4 iFix 6 Sterling External Authentication Server 2.3.1.0 through 2.3.1.11 iFix 5 Refer to the following reference URLs for

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_rc4_stream_cipher_affects_sterling_external_authentication_server_cve_2015_2808?lang=en_us