Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL affect Sterling Connect:Enterprise for UNIX


System information

   
Affected software IBM

Description

OpenSSL vulnerabilities were disclosed on March 19, 2015 and again on June 11, 2015 by the OpenSSL Project. OpenSSL is used by Sterling Connect:Enterprise for UNIX. Sterling Connect:Enterprise for UNIX has addressed the applicable CVEs. CVE(s): CVE-2015-0286, CVE-2015-0288, CVE-2015-0289, CVE-2015-0293, CVE-2015-1788 and CVE-2015-1789 Affected product(s) and affected version(s): Sterling Connect:Enterprise For UNIX (CEU) 2.5.0.0 - 2.5.0.3 iFix 7 Sterling Connect:Enterprise For UNIX

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_affect_sterling_connect_enterprise_for_unix?lang=en_us

Standar resources

Property Value
CVE CVE-2015-0286 ,CVE-2015-0288 ,CVE-2015-0289 ,CVE-2015-0293 ,CVE-2015-1788 ,CVE-2015-1789 ,CVE-2015-4000 ,CVE-2014-0227 ,CVE-2014-0230 ,CVE-2015-0410 ,CVE-2014-6593 ,CVE-2015-0488 ,CVE-2015-0478 ,CVE-2015-0204 and CVE-2015-2808.

Version history

Version Comments Date
1.0 Advisory issued 2015-07-28
Ministerio de Defensa
CNI
CCN
CCN-CERT