Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in SSL affect IBM DataPower Gateways (CVE-2015-0287, CVE-2015-0289, CVE-2015-0292, and CVE-2015-0293)

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on March 19, 2015 by the OpenSSL Project. IBM DataPower Gateway has addressed the corresponding applicable CVEs. CVE(s): CVE-2015-0287, CVE-2015-0289, CVE-2015-0292 and CVE-2015-0293 Affected product(s) and affected version(s): IBM DataPower Gateway appliances all versions through 6.0.0.13, 6.0.1.9, 7.0.0.6, and 7.1.0.4 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_ssl_affect_ibm_datapower_gateways_cve_2015_0287_cve_2015_0289_cve_2015_0292_and_cve_2015_0293?lang=en_us