Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in RC4 stream cipher affects IBM PureData System for Analytics (CVE-2015-2808)

   
Affected software IBM
 
The RC4 “Bar Mitzvah” Attack for SSL/TLS affects IBM PureData System for Analytics. CVE(s): CVE-2015-2808 Affected product(s) and affected version(s): IBM PureData System for Analytics N100x/TwinFin, IBM PureData System for Analytics N200x, and IBM PureData System for Analytics N3001 models which contain Lenovo Integrated Management Modules (IMMs) v1 and v2. Workarounds and Mitigations Remove RC4 as an authentication option for the Integrated Management Modules (IMM) on

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_rc4_stream_cipher_affects_ibm_puredata_system_for_analytics_cve_2015_2808?lang=en_us