Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM API Management (CVE-2015-0287 and CVE-2015-0292)

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on March 19, 2015 by the OpenSSL Project. OpenSSL is used by IBM API Management. IBM API Management has addressed the applicable CVEs. CVE(s): CVE-2015-0287 and CVE-2015-0292 Affected product(s) and affected version(s): IBM API Management V2.0, V3.0 and V4.0 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21959219 X-Force Database:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_affect_ibm_api_management_cve_2015_0287_and_cve_2015_0292?lang=en_us