Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in IBM Runtime Environments Java Technology Edition affect WebSphere Transformation Extender with Launcher Hypervisor Edition for AIX (CVE-2015-0488, CV


System information

   
Affected software IBM

Description

There are multiple vulnerabilities in IBM Runtime Environments Java Technology Edition that is used by WebSphere Transformation Extender. These issues were disclosed as part of the IBM Java SDK updates in April 2015. This bulletin also addresses the Logjam Attack on TLS connections using the Diffie-Hellman (DH) key exchange protocol (CVE-2015-4000). CVE(s): CVE-2015-0488, CVE-2015-0478, CVE-2015-1916 and CVE-2015-4000 Affected product(s) and affected version(s): Affected products:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_runtime_environments_java_technology_edition_affect_websphere_transformation_extender_with_launcher_hypervisor_edition_for_aix_cve_2015_0488_c

Standar resources

Property Value
CVE

Version history

Version Comments Date
1.0 Advisory issued 2015-07-17
Ministerio de Defensa
CNI
CCN
CCN-CERT