Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in OpenSSL affects IBM® SDK for Node.js™ in IBM Bluemix (CVE-2015-1793)

   
Affected software IBM
 
OpenSSL alternate chains certificate forgery vulnerability (CVE-2015-1793) disclosed by the OpenSSL Project on July 9 2015. IBM SDK for Node.js in IBM Bluemix has addressed this CVE. CVE(s): CVE-2015-1793 Affected product(s) and affected version(s): This vulnerability affects all versions up to and including IBM SDK for Node.js v1.1.0.15, v1.2.0.3 and v1.2.0.4. It also affects open-source version v0.10.38 and v0.12.4 of the Node.js runtime in IBM Bluemix. The issue has been resolved in

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_openssl_affects_ibm_sdk_for_node_js_in_ibm_bluemix_cve_2015_1793?lang=en_us