Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect WebSphere Transformation Extender with Launcher Hypervisor Edition for AIX, including RC4 stream cipher vulnerability (CVE-20

   
Affected software IBM
 
There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition used by WebSphere Transformation Extender with Launcher Hypervisor Edition for AIX. These issues were disclosed as part of the IBM Java SDK updates in January 2015. In addition, the RC4 “Bar Mitzvah” Attack for SSL/TLS affects WebSphere Transformation Extender with Launcher Hypervisor Edition for AIX. CVE(s): CVE-2014-6593, CVE-2015-0383, CVE-2015-0410 and CVE-2015-2808 Affected

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_java_runtime_affect_websphere_transformation_extender_with_launcher_hypervisor_edition_for_aix_including_rc4_stream_cipher_vulnerability_cve_2