Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in OpenSSL affect Sterling Connect:Express for UNIX (CVE-2015-0209, CVE-2015-0286, CVE-2015-2088, CVE-2015-0292, CVE-2015-0293)

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on March 19, 2015 by the OpenSSL Project. OpenSSL is used by Sterling Connect:Express for UNIX. CXU has addressed the applicable CVEs. CVE(s): CVE-2015-0209, CVE-2015-0286, CVE-2015-0288, CVE-2015-0292 and CVE-2015-0293 Affected product(s) and affected version(s): IBM Sterling Connect:Express for UNIX 1.4.6 - All versions prior to 1.4.6.1 iFix 146-109 IBM Sterling Connect:Express for UNIX 1.5.0 - All versions prior to 1.5.0.11 iFix 150-1111

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_openssl_affect_sterling_connect_express_for_unix_cve_2015_0209_cve_2015_0286_cve_2015_2088_cve_2015_0292_cve_2015_0293?lang=en_us