Vulnerability Bulletins |
IBM Security Bulletin: Vulnerability in RC4 stream cipher affects Tivoli/Security Key Lifecycle Manager (CVE-2015-2808) |
|
| Affected software | IBM |
|
The RC4 “Bar Mitzvah” Attack for SSL/TLS affects IBM Webshere Application Server 8.5.5 is shipped as a component of IBM Tivoli/Security Key Lifecycle Manager. CVE(s): CVE-2015-2808 Affected product(s) and affected version(s): Affected Products Versions IBM Tivoli Key Lifecycle Manager (TKLM) 1.0.x, 2.0.0.x, 2.0.1.x IBM Security Key Lifecycle Manager (SKLM) 2.5.0.x Refer to the following reference URLs for remediation and additional vulnerability details: More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_rc4_stream_cipher_affects_tivoli_security_key_lifecycle_manager_cve_2015_2808?lang=en_us |
|






