Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL including Logjam affect Rational Application Developer for WebSphere Software (CVE-2015-1791, CVE-2015-1792, CVE-2014-8176, CVE-2015-1788, CVE-2015-17

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on June 11, 2015 by the OpenSSL Project. This includes Logjam Attack on TLS connections using the Diffie-Hellman (DH) key exchange protocol (CVE-2015-4000). OpenSSL is used by IBM SDK for Node.js for the Cordova tools in Rational Application Developer for WebSphere Software. Rational Application Developer for WebSphere Software has addressed the applicable CVEs. CVE(s): CVE-2015-4000, CVE-2015-1791, CVE-2015-1792, CVE-2014-8176, CVE-2015-1788,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_including_logjam_affect_rational_application_developer_for_websphere_software_cve_2015_1791_cve_2015_1792_cve_2014_8176_cve_2015_1788_cve_2015_1789