Vulnerability Bulletins |
IBM Security Bulletin: Vulnerability in RC4 stream cipher affects Web Experience Factory (CVE-2015-2808) |
|
| Affected software | IBM |
|
The RC4 “Bar Mitzvah” Attack for SSL/TLS affects the Java JREs bundled with Web Experience Factory. These JREs are used to run the copies of WebSphere Community Edition (WASCE), WebSphere Liberty (Liberty), and Eclipse bundled with Web Experience Factory. CVE(s): CVE-2015-2808 Affected product(s) and affected version(s): All supported versions of Web Experience Factory. Refer to the following reference URLs for remediation and additional vulnerability details: Source More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_rc4_stream_cipher_affects_web_experience_factory_cve_2015_2808?lang=en_us |
|






