Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL affect Sterling Connect:Express for UNIX (CVE-2015-1793)


System information

   
Affected software IBM

Description

OpenSSL vulnerabilities were disclosed by the OpenSSL Project and affect IBM Sterling Connect:Express for UNIX (CXU). This includes the alternate chains certificate forgery vulnerability (CVE-2015-1793). CXU has addressed the applicable CVE. CVE(s): CVE-2015-1793 Affected product(s) and affected version(s): Sterling Connect:Express for UNIX version 1.5.0.12 iFix 01 and earlier Sterling Connect:Express for UNIX version 1.4.6-111 and earlier Refer to the following reference URLs for

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_affect_sterling_connect_express_for_unix_cve_2015_1793?lang=en_us

Standar resources

Property Value
CVE CVE-2015-1793 ,CVE-2015-0197 ,CVE-2015-0198 and CVE-2015-4620.

Version history

Version Comments Date
1.0 Advisory issued 2015-07-28
Ministerio de Defensa
CNI
CCN
CCN-CERT