Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL including Logjam affect IBM MobileFirst Platform Foundation and IBM Worklight

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed by the OpenSSL Project and affect IBM MobileFirst Platform Foundation and IBM Worklight. This issue includes the Logjam Attack on TLS connections using the Diffie-Hellman (DH) key exchange protocol (CVE-2015-4000). This issue also includes the alternate chains certificate forgery vulnerability (CVE-2015-1793). IBM MobileFirst Platform Foundation and IBM Worklight have addressed the applicable CVEs. CVE(s): CVE-2015-4000, CVE-2015-1793, CVE-2015-1788,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_including_logjam_affect_ibm_mobilefirst_platform_foundation_and_ibm_worklight?lang=en_us