Vulnerability Bulletins

Vulnerabilities in OpenSSL affect Cognos Insight (CVE-2015-0204)


System information

   
Affected software IBM

Description

OpenSSL vulnerabilities were disclosed on January 8, 2015 by the OpenSSL Project. This includes “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability. OpenSSL is used by Cognos Insight. Cognos Insight has addressed the applicable CVEs. CVE(s): CVE-2015-0204 Affected product(s) and affected version(s): Cognos Insight 10.2, Cognos Insight 10.2.1, Cognos Insight 10.2.2 Refer to the following reference URLs for remediation and additional vulnerability

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/vulnerabilities_in_openssl_affect_cognos_insight_cve_2015_0204?lang=en_us

Standar resources

Property Value
CVE CVE-2015-0204.

Version history

Version Comments Date
1.0 Advisory issued 2015-06-07
Ministerio de Defensa
CNI
CCN
CCN-CERT