Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in Diffie-Hellman ciphers may affect IBM Java shipped with IBM Notes and Domino (CVE-2015-4000)


System information

   
Affected software IBM

Description

IBM Java is shipped as a component of both IBM Notes and Domino. The Logjam Attack on TLS connections using the Diffie-Hellman (DH) key exchange protocol may affect IBM Java. The IBM Notes and Domino native implementation of TLS is not affected. CVE(s): CVE-2015-4000 Affected product(s) and affected version(s): IBM Notes and Domino 9.0.1 Fix Pack 4 (plus Interim Fix) and earlier IBM Notes and Domino Domino 8.5.3 Fix Pack 6 (plus Interim Fixes) and earlier All 9.0 and 8.5.x releases of

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_diffie_hellman_ciphers_may_affect_ibm_java_shipped_with_ibm_notes_and_domino_cve_2015_4000?lang=en_us

Standar resources

Property Value
CVE CVE-2015-4000 ,CVE-2015-0383 and CVE-2015-1788.

Version history

Version Comments Date
1.0 Advisory issued 2015-07-16
Ministerio de Defensa
CNI
CCN
CCN-CERT